PYSEC-2025-75

See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/keras/PYSEC-2025-75.yaml
JSON Data
https://api.osv.dev/v1/vulns/PYSEC-2025-75
Aliases
Published
2025-08-11T08:15:26.507Z
Modified
2026-05-19T05:26:19.327439272Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A safe mode bypass vulnerability in the Model.load_model method in Keras versions 3.0.0 through 3.10.0 allows an attacker to achieve arbitrary code execution by convincing a user to load a specially crafted .keras model archive.

References

Affected packages

PyPI / keras

Package

Affected ranges

Database specific

source
"https://github.com/pypa/advisory-database/blob/main/vulns/keras/PYSEC-2025-75.yaml"