Beveiligingsadvies

CVE-2026-15605

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-13 22:45:09
Laatst bijgewerkt 2026-07-14 12:42:47
Toegewezen door VulDB
CVSS-score 3.1
Status PUBLISHED

Beschrijving

A security vulnerability has been detected in wandb 0.25.2.dev1. Affected is the function ArtifactManifestEntry.download in the library wandb/sdk/lib/hashutil.py of the component Artifact Integrity Validation. The manipulation leads to use of weak hash. The attack may be initiated remotely. A high degree of complexity is needed for the attack. The exploitability is told to be difficult. The pull request to fix this issue awaits acceptance.