Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-12484 |
|
Keras: TorchModuleWrapper can deserialize unsafe PyTorch pickle data
Keras: TorchModuleWrapper can deserialize unsafe PyTorch pickle data
|
| CVE-2026-12482 |
|
Path Traversal in keras (CVE-2026-12482)
path traversal in keras (CVE-2026-12482). Risk of unauthorized operations or information disclosure. Exploitable via ``filter_safe_tarinfos``. Mitigation: upgrade to `3.15.0` or later.
|
| CVE-2026-12481 |
|
Unsafe Deserialization in keras (CVE-2026-12481)
vulnerability in keras (CVE-2026-12481). Successful exploitation can lead to full system takeover. Exploitable via ``Lambda``. Mitigation: upgrade to `3.15.0` or later.
|
| CVE-2026-11816 |
|
Path Traversal in keras (CVE-2026-11816)
path traversal in keras (CVE-2026-11816). Confidential information can be exposed externally. Exploitable via ``AttributeError``. Mitigation: upgrade to `3.14.0` or later.
|
| CVE-2026-1462 |
|
Unsafe Deserialization in keras (CVE-2026-1462)
vulnerability in keras (CVE-2026-1462). Successful exploitation can lead to full system takeover. Exploitable via ``TFSMLayer``. Mitigation: upgrade to `3.13.2` or later.
|
| CVE-2026-1669 |
|
Vulnerability in keras (CVE-2026-1669)
vulnerability in keras (CVE-2026-1669). Confidential information can be exposed externally.
|
| CVE-2026-0897 |
|
Vulnerability in keras (CVE-2026-0897)
vulnerability in keras (CVE-2026-0897). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `3.13.1` or later.
|