Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

huggingface — Vulnerabilities & Security Advisories 38

Browse all 38 CVE security advisories affecting huggingface. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Hugging Face operates as a collaborative platform for machine learning, primarily hosting models, datasets, and applications to facilitate open-source AI development. While its core infrastructure relies on standard web technologies, security audits have identified twenty-four recorded Common Vulnerabilities and Exposures (CVEs). Historically, these issues predominantly involve cross-site scripting (XSS) and server-side request forgery (SSRF), stemming from complex input handling within its Python-based backend and JavaScript frontend components. Although critical remote code execution (RCE) vulnerabilities have been rare, the platform’s role as a central hub for model distribution amplifies the impact of any compromise. Notable incidents have largely focused on data exposure risks rather than direct system takeovers, highlighting the inherent challenges in securing large-scale, community-driven repositories. Continuous patching and strict access controls remain essential to mitigate these evolving threats within its extensive ecosystem.

CVE ID Title CVSS Severity Published
CVE-2026-85670 tokenizers BpeBuilder Buffer Overflow via merge token — tokenizers CWE-787 6.5 Medium 2026-09-04
CVE-2026-75104 Hugging Face Transformers Path Traversal via Checkpoint Index — transformers CWE-22 5.5 Medium 2026-08-17
CVE-2026-69112 Hugging Face Accelerate 1.14.0 Path Traversal and DoS via weight_map — accelerate CWE-22 7.1 High 2026-08-10
CVE-2026-71281 peft Unsafe Deserialization via torch.load() Without weights_only in LoRA-GA and CorDA Modules — peft CWE-502 8.8 High 2026-08-05
CVE-2026-9856 Path Traversal in huggingface/transformers — huggingface/transformers CWE-22 - - 2026-08-02
CVE-2026-66007 Datasets Path Traversal via Unsanitized file_name Metadata — datasets CWE-22 6.5 Medium 2026-07-24
CVE-2026-65010 Datasets Symlink-following Arbitrary File Write via Extractor.extract() — datasets CWE-61 6.6 Medium 2026-07-23
CVE-2026-65920 Diffusers Path Traversal via weight_map Arbitrary File Read — diffusers CWE-22 4.3 Medium 2026-07-23
CVE-2026-63086 text-generation-inference 3.3.7 SSRF via fetch_image in multimodal chat completions — text-generation-inference CWE-918 8.6 High 2026-07-16
CVE-2026-45804 Diffusers: TOCTOU Trust Remote Code Bypass — diffusers CWE-367 7.5 High 2026-07-15
CVE-2026-5241 Policy Bypass in LightGlue Nested Config Resolution in huggingface/transformers — huggingface/transformers CWE-829 - - 2026-06-03
CVE-2026-4372 Arbitrary Remote Code Execution via `_attn_implementation_internal` Config Injection in huggingface/transformers — huggingface/transformers CWE-1066 - - 2026-05-24
CVE-2026-44827 Diffusers: None.py Trust Remote Code Bypass — diffusers CWE-94 8.8 High 2026-05-14
CVE-2026-44513 Diffusers: `trust_remote_code` bypass via `custom_pipeline` and local custom components — diffusers CWE-94 8.8 High 2026-05-14
CVE-2026-1839 Arbitrary Code Execution via Unsafe torch.load() in Trainer Checkpoint Loading in huggingface/transformers — huggingface/transformers CWE-502 9.8AI Critical AI 2026-04-07
CVE-2026-4963 huggingface smolagents Incomplete Fix CVE-2025-9959 local_python_executor.py evaluate_with code injection — smolagents CWE-94 6.3 Medium 2026-03-27
CVE-2026-2654 huggingface smolagents LocalPythonExecutor requests.post server-side request forgery — smolagents CWE-918 6.3 Medium 2026-02-18
CVE-2026-0599 Unbounded External Image Fetch in Validation Leads to Resource-Exhaustion DoS in huggingface/text-generation-inference — huggingface/text-generation-inference CWE-400 7.5AI High AI 2026-02-02
CVE-2025-11844 XPath Injection in Hugging Face Smolagents search_item_ctrl_f Function — huggingface/smolagents CWE-643 9.1AI Critical AI 2025-10-22
CVE-2025-6921 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-400 7.5 - 2025-09-23
CVE-2025-10772 huggingface LeRobot ZeroMQ Socket lekiwi_remote.py missing authentication — LeRobot CWE-306 6.3 Medium 2025-09-21
CVE-2025-6051 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5 - 2025-09-14
CVE-2025-6638 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5 - 2025-09-12
CVE-2025-5197 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5 - 2025-08-06
CVE-2025-5120 Sandbox Escape Vulnerability in huggingface/smolagents — huggingface/smolagents CWE-94 10.0 - 2025-07-27
CVE-2025-3933 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5AI High AI 2025-07-11
CVE-2025-3777 Improper Input Validation in huggingface/transformers — huggingface/transformers CWE-20 9.1 - 2025-07-07
CVE-2025-3264 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5 - 2025-07-07
CVE-2025-3263 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5 - 2025-07-07
CVE-2025-3262 Regular Expression Denial of Service (ReDoS) in huggingface/transformers — huggingface/transformers CWE-1333 7.5 - 2025-07-07

This page lists every published CVE security advisory associated with huggingface. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.