Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2026-65920

9 дней назад

A flaw was found in Diffusers. This path traversal vulnerability in the `_get_checkpoint_shard_files` function allows a remote attacker to read arbitrary files. By supplying malicious `weight_map` values in model index JSON, an attacker can use `../` sequences or absolute paths to escape the model directory and read sensitive files outside the intended location during model loading. This could lead to information disclosure.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2026-65920

9 дней назад

Diffusers through 0.39.0, fixed in commit cee298c, contains a path traversal vulnerability in the _get_checkpoint_shard_files function that allows attackers to read arbitrary files by supplying malicious weight_map values in model index JSON. Attackers can use ../ sequences or absolute paths in weight_map entries to escape the model directory and read safetensors files outside the intended location during model loading.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-9576-hw58-7552

9 дней назад

Diffusers through 0.39.0, fixed in commit cee298c, contains a path traversal vulnerability in the _get_checkpoint_shard_files function that allows attackers to read arbitrary files by supplying malicious weight_map values in model index JSON. Attackers can use ../ sequences or absolute paths in weight_map entries to escape the model directory and read safetensors files outside the intended location during model loading.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-65920

A flaw was found in Diffusers. This path traversal vulnerability in the `_get_checkpoint_shard_files` function allows a remote attacker to read arbitrary files. By supplying malicious `weight_map` values in model index JSON, an attacker can use `../` sequences or absolute paths to escape the model directory and read sensitive files outside the intended location during model loading. This could lead to information disclosure.

CVSS3: 4.3
0%
Низкий
9 дней назад
nvd логотип
CVE-2026-65920

Diffusers through 0.39.0, fixed in commit cee298c, contains a path traversal vulnerability in the _get_checkpoint_shard_files function that allows attackers to read arbitrary files by supplying malicious weight_map values in model index JSON. Attackers can use ../ sequences or absolute paths in weight_map entries to escape the model directory and read safetensors files outside the intended location during model loading.

CVSS3: 4.3
0%
Низкий
9 дней назад
github логотип
GHSA-9576-hw58-7552

Diffusers through 0.39.0, fixed in commit cee298c, contains a path traversal vulnerability in the _get_checkpoint_shard_files function that allows attackers to read arbitrary files by supplying malicious weight_map values in model index JSON. Attackers can use ../ sequences or absolute paths in weight_map entries to escape the model directory and read safetensors files outside the intended location during model loading.

CVSS3: 4.3
0%
Низкий
9 дней назад

Уязвимостей на страницу