Huggingface
Huggingface Transformers: vulnerabilidades y CVE
Huggingface Transformers tiene 36 vulnerabilidades publicadas, 17 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE36
Últimos 12 meses17
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-86169 | Alta (8.7) | 0.94% | — | 5 sept 2026 | Axolotl before 0.19.0 contains a remote code execution vulnerability in the multipack patch path where trust_remote_code defaults to None instead of False, causing the security guard to be bypassed. Attackers can… |
| CVE-2026-80047 | Alta (7.8) | 0.10% | — | 1 sept 2026 | A vulnerability in Hugging Face Transformers (versions 4.57.0 to 5.16.1) allows remote Python files to be written to local disk without user consent when using GenerativePreTrainedModel.load_custom_generate(). The… |
| CVE-2026-75104 | Media (6.8) | 0.29% | — | 17 ago 2026 | Hugging Face Transformers fails to validate shard filenames in checkpoint index files, allowing attackers to read arbitrary files outside the model directory. Attackers can supply malicious index files with… |
| CVE-2026-9856 | Alta (7.1) | 0.46% | — | 2 ago 2026 | A vulnerability in huggingface/transformers versions <=5.8.0.dev0 allows an attacker to perform arbitrary file writes via path traversal. The issue resides in the `save_pretrained()` methods of `PreTrainedTokenizerBase`… |
| CVE-2026-5241 | Crítica (9.6) | 0.94% | — | 3 jun 2026 | A vulnerability in the LightGlue model loading path of huggingface/transformers version 5.2.0 allows an attacker-controlled model repository to execute arbitrary code during model initialization. The issue arises… |
| CVE-2026-47117 | Crítica (9.3) | 1.3% | — | 2 jun 2026 | OpenMed before 1.5.2 contains a remote code execution vulnerability in the PII privacy-filter model loading path. The privacy-filter dispatcher used broad substring matching on the user-supplied model_name parameter,… |
| CVE-2026-4372 | Alta (7.8) | 0.60% | — | 24 may 2026 | A critical remote code execution vulnerability exists in all versions of the HuggingFace transformers library prior to version 5.3.0. The vulnerability allows an attacker to craft a malicious `config.json` file… |
| CVE-2026-7669 | Media (6.3) | 0.42% | — | 2 may 2026 | A vulnerability was detected in sgl-project SGLang up to 0.5.9. Impacted is the function get_tokenizer of the file python/sglang/srt/utils/hf_transformers_utils.py of the component HuggingFace Transformer Handler. The… |
| CVE-2026-1839 | Alta (7.8) | 0.38% | — | 7 abr 2026 | A vulnerability in the HuggingFace Transformers library, specifically in the `Trainer` class, allows for arbitrary code execution. The `_load_rng_state()` method in `src/transformers/trainer.py` at line 3059 calls… |
| CVE-2025-14930 | Alta (7.8) | 0.33% | — | 23 dic 2025 | Hugging Face Transformers GLM4 Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face… |
| CVE-2025-14929 | Alta (7.8) | 0.37% | — | 23 dic 2025 | Hugging Face Transformers X-CLIP Checkpoint Conversion Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected… |
| CVE-2025-14928 | Alta (7.8) | 0.34% | — | 23 dic 2025 | Hugging Face Transformers HuBERT convert_config Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face… |
| CVE-2025-14927 | Alta (7.8) | 0.34% | — | 23 dic 2025 | Hugging Face Transformers SEW-D convert_config Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face… |
| CVE-2025-14926 | Alta (7.8) | 0.34% | — | 23 dic 2025 | Hugging Face Transformers SEW convert_config Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face… |
| CVE-2025-14924 | Alta (7.8) | 0.33% | — | 23 dic 2025 | Hugging Face Transformers megatron_gpt2 Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging… |
| CVE-2025-14921 | Alta (7.8) | 0.33% | — | 23 dic 2025 | Hugging Face Transformers Transformer-XL Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of… |
| CVE-2025-14920 | Alta (7.8) | 0.36% | — | 23 dic 2025 | Hugging Face Transformers Perceiver Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging… |
| CVE-2025-6921 | Alta (7.5) | 0.51% | — | 23 sept 2025 | The huggingface/transformers library, versions prior to 4.53.0, is vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer. The vulnerability arises from the _do_use_weight_decay… |
| CVE-2025-6051 | Media (5.3) | 0.38% | — | 14 sept 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, specifically within the `normalize_numbers()` method of the `EnglishNormalizer` class. This… |
| CVE-2025-6638 | Alta (7.5) | 0.53% | — | 12 sept 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, specifically affecting the MarianTokenizer's `remove_language_code()` method. This vulnerability is… |
| CVE-2025-5197 | Media (5.3) | 0.40% | — | 6 ago 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability exists in the Hugging Face Transformers library, specifically in the `convert_tf_weight_name_to_pt_weight_name()` function. This function, responsible for… |
| CVE-2025-3933 | Media (5.3) | 0.43% | — | 11 jul 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, specifically within the DonutProcessor class's `token2json()` method. This vulnerability affects… |
| CVE-2025-3777 | Baja (3.5) | 0.38% | — | 7 jul 2025 | Hugging Face Transformers versions up to 4.49.0 are affected by an improper input validation vulnerability in the `image_utils.py` file. The vulnerability arises from insecure URL validation using the `startswith()`… |
| CVE-2025-3264 | Media (5.3) | 0.46% | — | 7 jul 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, specifically in the `get_imports()` function within `dynamic_module_utils.py`. This vulnerability… |
| CVE-2025-3263 | Media (5.3) | 0.46% | — | 7 jul 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the Hugging Face Transformers library, specifically in the `get_configuration_file()` function within the `transformers.configuration_utils`… |
| CVE-2025-3262 | Alta (7.5) | 0.46% | — | 7 jul 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was discovered in the huggingface/transformers repository, specifically in version 4.49.0. The vulnerability is due to inefficient regular expression… |
| CVE-2025-2099 | Alta (7.5) | 0.58% | — | 19 may 2025 | A vulnerability in the `preprocess_string()` function of the `transformers.testing_utils` module in huggingface/transformers version v4.48.3 allows for a Regular Expression Denial of Service (ReDoS) attack. The regular… |
| CVE-2025-1194 | Media (6.5) | 0.48% | — | 29 abr 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was identified in the huggingface/transformers library, specifically in the file `tokenization_gpt_neox_japanese.py` of the GPT-NeoX-Japanese model. The… |
| CVE-2024-12720 | Alta (7.5) | 0.73% | — | 20 mar 2025 | A Regular Expression Denial of Service (ReDoS) vulnerability was identified in the huggingface/transformers library, specifically in the file tokenization_nougat_fast.py. The vulnerability occurs in the… |
| CVE-2024-11394 | Alta (8.8) | 2.6% | — | 22 nov 2024 | Hugging Face Transformers Trax Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.