PT-2026-4204 · Unknown · Sentencepiece

CVE-2026-1260

·

Published

2026-01-22

·

Updated

2026-07-07

CVSS v4.0

8.5

High

VectorAV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Sentencepiece versions prior to 0.2.1
Description An invalid memory access issue exists in Sentencepiece when processing a specially crafted model file that was not generated through standard training procedures. This can lead to a crash or potentially allow for arbitrary code execution.
Recommendations Update to version 0.2.1 or later.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-1260
GHSA-38VQ-G6VR-W8WF
PYSEC-2026-1909

Affected Products

Sentencepiece