LIVE · cybersecurity feed
Live wire
cve recordmedium

CVE-2026-4538

linuxfoundation · pytorch

Published
CVSS5.3
Severitymedium
WeaknessCWE-20
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Description

A vulnerability was identified in PyTorch 2.10.0. The affected element is an unknown function of the component pt2 Loading Handler. The manipulation leads to deserialization. The attack can only be performed from a local environment. The exploit is publicly available and might be used. The project was informed of the problem early through a pull request but has not reacted yet.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-4538

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-4538.