Database/AI/ML frameworks & serving
PyTorch Lightning (`_load_state`): RCE by importing and executing classes named in the checkpoint
CVSS 7.8CVE-2026-58659AI/ML frameworks & servingcurated
Impact
RCE by importing and executing classes named in the checkpoint
Who can reach it
Customer-supplied checkpoint
What to do
No format-level fix — the checkpoint format is the vulnerability. Enforce safetensors
References
Related entries
- NVIDIA Megatron Bridge: deserialization of untrusted checkpoints or configs gives code executionCVE-2026-61750 · NVIDIA Megatron BridgeHigh
- NVIDIA NemoClaw: OS command injection in the status and logs plugin commandsCVE-2026-65089 · NVIDIA NemoClaw for Linux (status and logs plugin commands)High
- NVIDIA NemoClaw: OS command injection in the NIM management componentCVE-2026-65090 · NVIDIA NemoClaw for Linux (NIM management component)High
- NVIDIA NemoClaw: OS command injection in the Telegram bridge componentCVE-2026-65096 · NVIDIA NemoClaw for Linux (Telegram bridge component)High
- NVIDIA NemoClaw: OS command injection through the command-line interfaceCVE-2026-65099 · NVIDIA NemoClaw for Linux (command-line interface)High
- NVIDIA DeepStream: crafted tensor dimensions in a YAML config trigger an integer overflowCVE-2026-65102 · NVIDIA DeepStream (tensor dimension parsing from a YAML configuration file)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.