| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-1839 | Arbitrary Code Execution via Unsafe torch.load() in Trainer Checkpoint Loading in huggingface/transformers | huggingface | huggingface/transformers | - | - | 2026-04-07 05:22:01 | Deep Dive |
| CVE-2025-14930 | Hugging Face Transformers GLM4 Deserialization of Untrusted Data Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:53 | Deep Dive |
| CVE-2025-14928 | Hugging Face Transformers HuBERT convert_config Code Injection Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:48 | Deep Dive |
| CVE-2025-14924 | Hugging Face Transformers megatron_gpt2 Deserialization of Untrusted Data Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:41 | Deep Dive |
| CVE-2025-14920 | Hugging Face Transformers Perceiver Model Deserialization of Untrusted Data Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:37 | Deep Dive |
| CVE-2025-14926 | Hugging Face Transformers SEW convert_config Code Injection Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:32 | Deep Dive |
| CVE-2025-14927 | Hugging Face Transformers SEW-D convert_config Code Injection Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:28 | Deep Dive |
| CVE-2025-14921 | Hugging Face Transformers Transformer-XL Model Deserialization of Untrusted Data Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:23 | Deep Dive |
| CVE-2025-14929 | Hugging Face Transformers X-CLIP Checkpoint Conversion Deserialization of Untrusted Data Remote Code Execution Vulnerability | Hugging Face | Transformers | - | - | 2025-12-23 21:04:15 | Deep Dive |
| CVE-2025-6921 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-09-23 13:56:16 | Deep Dive |
| CVE-2025-6051 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-09-14 17:03:03 | Deep Dive |
| CVE-2025-6638 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-09-12 10:46:08 | Deep Dive |
| CVE-2025-5197 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-08-06 11:53:37 | Deep Dive |
| CVE-2025-3933 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | - | - | 2025-07-11 09:22:27 | Deep Dive |
| CVE-2025-3777 | Improper Input Validation in huggingface/transformers | huggingface | huggingface/transformers | 低危 | - | 2025-07-07 09:55:38 | Deep Dive |
| CVE-2025-3264 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-07-07 09:55:11 | Deep Dive |
| CVE-2025-3263 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-07-07 09:55:00 | Deep Dive |
| CVE-2025-3262 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-07-07 09:54:39 | Deep Dive |
| CVE-2025-2099 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | 中危 | - | 2025-05-19 11:22:37 | Deep Dive |
| CVE-2025-1194 | Regular Expression Denial of Service (ReDoS) in huggingface/transformers | huggingface | huggingface/transformers | - | - | 2025-04-29 11:30:39 | Deep Dive |