Database/AI/ML frameworks & serving
Ray (WebDataset reader): Unsafe deserialization
CVSS 8.8CVE-2026-57516AI/ML frameworks & servingcurated
Impact
Unsafe deserialization → RCE from a malicious tar archive
Who can reach it
Customer-supplied dataset consumed by a Ray Data pipeline
What to do
Upgrade to 2.56.0+. Dataset files are now an RCE vector, not just model files
References
Related entries
- Weaviate: RBAC role assignment does not verify the assigner holds the granted permissionsCVE-2026-59093 · WeaviateHigh
- LiteLLM Proxy: forged Authorization header reaches MCP tooling without a valid API keyCVE-2026-59822 · LiteLLM Proxy (MCP Streamable HTTP endpoint authentication)High
- NVIDIA OpenShell: a malicious gateway can inject OS commands into the connecting clientCVE-2026-65091 · NVIDIA OpenShell (gateway response handling)High
- NVIDIA NeMo: TabularTokenizer unpickles an attacker-supplied .pkl file, giving code executionCVE-2026-65179 · NVIDIA NeMo (TabularTokenizer pickle.load of an untrusted .pkl)High
- Hugging Face peft: CorDA and LoRA-GA load cache files with unsafe torch.load, giving code executionCVE-2026-71281 · Hugging Face peft - LoRA-GA and CorDA initialization (torch.load without weights_only)High
- ChromaDB (Rust): Missing authorization validationCVE-2026-8828 · ChromaDB (Rust)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.