Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3856
  • PyPI/keras
Keras model loading is vulnerable to denial of service through HDF5 shape bombs 10 Sep
  • Fix available
  • Severity - 5.5 (Medium)
PYSEC-2026-3633
  • PyPI/keras
Keras: HDF5 links can disclose local file contents 10 Aug
  • Fix available
  • Severity - 6.5 (Medium)
PYSEC-2026-3634
  • PyPI/keras
Keras: TorchModuleWrapper can deserialize unsafe PyTorch pickle data 10 Aug
  • Fix available
  • Severity - 7.8 (High)
PYSEC-2026-3630
  • PyPI/keras
Keras: tar extraction permits symlink-based path traversal 10 Aug
  • Fix available
  • Severity - 3.1 (Low)
PYSEC-2026-3631
  • PyPI/keras
Keras: Lambda deserialization can bypass safe mode and execute code 10 Aug
  • Fix available
  • Severity - 8.8 (High)
PYSEC-2026-3629
  • PyPI/keras
Keras: HDF5 virtual datasets can disclose local files 10 Aug
  • Fix available
  • Severity - 5.5 (Medium)
PYSEC-2026-3632
  • PyPI/keras
Keras: DiskIOStore permits path traversal through crafted layer names 10 Aug
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-74m6-m3xx-3vmj
  • PyPI/keras
Keras model loading is vulnerable to denial of service through HDF5 shape bombs 10 Aug
  • Fix available
  • Severity - 5.5 (Medium)
GHSA-m8wh-29wm-52mv
  • PyPI/keras
Keras: HDF5 links can disclose local file contents 02 Aug
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-v2w2-w228-c444
  • PyPI/keras
Keras: TorchModuleWrapper can deserialize unsafe PyTorch pickle data 19 Jul
  • Fix available
  • Severity - 7.8 (High)
GHSA-58hv-7753-xmfq
  • PyPI/keras
Keras: tar extraction permits symlink-based path traversal 14 Jul
  • Fix available
  • Severity - 3.1 (Low)
PYSEC-2026-2547
  • PyPI/keras
Keras has an untrusted deserialization vulnerability 13 Jul
  • Fix available
  • Severity - 8.8 (High)
PYSEC-2026-2546
  • PyPI/keras
Keras has a Local File Disclosure via HDF5 External Storage During Keras Weight Loading 13 Jul
  • Fix available
  • Severity - 7.1 (High)
PYSEC-2026-1486
  • PyPI/keras
Keras Directory Traversal Vulnerability 07 Jul
  • Fix available
  • Severity - 8.9 (High)
PYSEC-2026-1487
  • PyPI/keras
Keras is vulnerable to arbitrary local file loading and Server-Side Request Forgery 07 Jul
  • Fix available
  • Severity - 5.9 (Medium)
GHSA-5gwj-m78q-7pq3
  • PyPI/keras
Keras: Lambda deserialization can bypass safe mode and execute code 03 Jul
  • Fix available
  • Severity - 8.8 (High)