CVE-2025-49655

Deserialization of untrusted data can occur in versions of the Keras framework running versions 3.11.0 up to but not including 3.11.3, enabling a maliciously uploaded Keras file containing a TorchModuleWrapper class to run arbitrary code on an end user’s system when loaded despite safe mode being enabled. The vulnerability can be triggered through both local and remote files.
Configurations

No configuration.

History

17 Oct 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-17 16:15

Updated : 2025-10-21 19:31


NVD link : CVE-2025-49655

Mitre link : CVE-2025-49655

CVE.ORG link : CVE-2025-49655


JSON object : View

Products Affected

No product.

CWE
CWE-502

Deserialization of Untrusted Data