Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-53002

Опубликовано: 26 июн. 2025
Источник: nvd
CVSS3: 8.3
CVSS3: 9.8
EPSS Низкий

Описание

LLaMA-Factory is a tuning library for large language models. A remote code execution vulnerability was discovered in LLaMA-Factory versions up to and including 0.9.3 during the LLaMA-Factory training process. This vulnerability arises because the vhead_file is loaded without proper safeguards, allowing malicious attackers to execute arbitrary malicious code on the host system simply by passing a malicious Checkpoint path parameter through the WebUI interface. The attack is stealthy, as the victim remains unaware of the exploitation. The root cause is that the vhead_file argument is loaded without the secure parameter weights_only=True. Version 0.9.4 contains a fix for the issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hiyouga:llama-factory:*:*:*:*:*:*:*:*
Версия до 0.9.4 (исключая)

EPSS

Процентиль: 78%
0.0119
Низкий

8.3 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 8.3
github
8 месяцев назад

LLaMA-Factory allows Code Injection through improper vhead_file safeguards

EPSS

Процентиль: 78%
0.0119
Низкий

8.3 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-94