Описание
SGLangs replay_request_dump.py contains an insecure pickle.load() without validation and proper deserialization. An attacker can take advantage of this by providing a malicious .pkl file, which will execute the attackers code on the device running the script.
EPSS
Процентиль: 3%
0.00015
Низкий
7.8 High
CVSS3
Дефекты
Связанные уязвимости
CVSS3: 7.8
github
около 1 месяца назад
SGLangs `replay_request_dump.py` contains an insecure pickle.load() without validation and proper deserialization
EPSS
Процентиль: 3%
0.00015
Низкий
7.8 High
CVSS3