Database/AI/ML frameworks & serving
skops (`Card.get_model`): Model card loading has no trusted-types check
CVSS 8.4CVE-2025-54886AI/ML frameworks & servingcurated
Impact
Model card loading has no trusted-types check → code execution
Who can reach it
Customer-supplied model card / repo
What to do
Upgrade past 0.12.0
References
Related entries
- mcp-shell: allowlist validates only the first token, so /bin/bash -c runs any commandCVE-2026-55581 · mcp-shell (security.go command allowlist, /bin/bash -c handling)High
- mcp-shell: allowed git binary runs arbitrary commands via a `!` alias, bypassing secure modeCVE-2026-55582 · mcp-shell (security.go shell-metacharacter checks, git alias handling)High
- Gradio: CORS origin validation bypassCVE-2024-47084 · GradioHigh
- vLLM: --revision pin ignored for some FunAudioChat and Tarsier2 processor, tokenizer and config loadsCVE-2026-100653 · vLLM (revision pin not propagated to FunAudioChat and Tarsier2 Hugging Face artifact loads)High
- Dagster: Vulnerability in Dagster Core prior to 1.13.1CVE-2026-41490 · DagsterHigh
- Gitingest: prefix-only host validation lets crafted URLs leak GitHub tokens to attacker hostsCVE-2026-82289 · Gitingest (_validate_host git host allowlist)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.