Database/AI/ML frameworks & serving
HuggingFace transformers: Critical RCE in all versions before 5.3.0
CVSS 7.8CVE-2026-4372AI/ML frameworks & servingcurated
Impact
Critical RCE in all versions before 5.3.0
Who can reach it
Customer-supplied model repo loaded by from_pretrained
What to do
Rebuild every image with transformers >= 5.3.0. Tenant-pinned versions are outside provider control
References
Related entries
- HuggingFace transformers: ReDoS in `convert_tf_weight_name_to_pt_weight_name`CVE-2025-5197 · HuggingFace transformersMedium
- stable-diffusion.cpp: Memory-safety flaw in model loadingCVE-2026-47749 · stable-diffusion.cppHigh
- PyTorch Lightning (`_load_state`): RCE by importing and executing classes named in the checkpointCVE-2026-58659 · PyTorch Lightning (`_load_state`)High
- NVIDIA Megatron Bridge: deserialization of untrusted checkpoints or configs gives code executionCVE-2026-61750 · NVIDIA Megatron BridgeHigh
- NVIDIA NemoClaw: OS command injection in the status and logs plugin commandsCVE-2026-65089 · NVIDIA NemoClaw for Linux (status and logs plugin commands)High
- NVIDIA NemoClaw: OS command injection in the NIM management componentCVE-2026-65090 · NVIDIA NemoClaw for Linux (NIM management component)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.