Database/AI/ML frameworks & serving

Dagster (gRPC `get_notebook_data`): Local file inclusion — read arbitrary files
CVSS 6.6CVE-2025-51481AI/ML frameworks & servingcurated
Impact
Local file inclusion — read arbitrary files
Who can reach it
Attacker with access to the Dagster gRPC server, i.e. a co-tenant in a flat network
What to do
Upgrade past 1.10.14
References
Related entries
- llama.cpp (GGUF vocabulary parsing, llama_vocab::impl::print_info): MALICIOUS MODEL FILE CRASHES THE SERVER: the GGUFNCVD-2025-020-llama-cpp-gguf-vocabulary-parsin · llama.cpp (GGUF vocabulary parsing, llama_vocab::impl::print_info)Medium
- Kubeflow: SSRFCVE-2023-6570 · KubeflowMedium
- Gradio: SSRF in the `/proxy` routeCVE-2024-2206 · GradioMedium
- picklescan: ZIP manipulation crashes the scanner (scan bypass by DoS)CVE-2025-1944 · picklescanMedium
- vLLM (`/v1/completions` guided decoding): Invalid `json_schema` kills the serverCVE-2025-48942 · vLLM (`/v1/completions` guided decoding)Medium
- vLLM: unbounded frame count in video/jpeg base64 data URLs crashes the server with OOMCVE-2026-34755 · vLLM OpenAI-compatible API server (video/jpeg base64 multimodal path)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.