Database/AI/ML frameworks & serving
picklescan: `scan_pytorch` bypass via forged magic numbers
CVE-2026-53875AI/ML frameworks & servingcurated
Impact
scan_pytorch bypass via forged magic numbers
Who can reach it
Customer-supplied model file
What to do
Upgrade to 1.0.3+. There is no complete fix for pickle scanning — this is the fifth bypass in the same tool
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.