Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-84q4-pj7g-82qq

Опубликовано: 01 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.

An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.

EPSS

Процентиль: 4%
0.00144
Низкий

7.8 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 7.8
nvd
3 месяца назад

An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.

EPSS

Процентиль: 4%
0.00144
Низкий

7.8 High

CVSS3

Дефекты

CWE-502