Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-38950

Опубликовано: 01 июн. 2026
Источник: nvd
CVSS3: 7.8
EPSS Низкий

Описание

An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.

EPSS

Процентиль: 4%
0.00144
Низкий

7.8 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 7.8
github
3 месяца назад

An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.

EPSS

Процентиль: 4%
0.00144
Низкий

7.8 High

CVSS3

Дефекты

CWE-502