Beveiligingsadvies

CVE-2025-4701

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-05-15 14:31:04
Laatst bijgewerkt 2025-05-15 15:08:21
Toegewezen door VulDB
CVSS-score 5.3
Status PUBLISHED

Beschrijving

A vulnerability, which was classified as problematic, has been found in VITA-MLLM Freeze-Omni up to 20250421. This issue affects the function torch.load of the file models/utils.py. The manipulation of the argument path leads to deserialization. It is possible to launch the attack on the local host.