PT-2026-84300 · Unknown · Modelscope

·

CVE-2026-84202

·

Published

2026-09-01

·

Updated

2026-09-10

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ModelScope versions prior to 1.40.1
Description ModelScope uses PyYAML's unsafe yaml.Loader to parse model configuration files. This allows arbitrary code execution through Python object construction tags, enabling attackers to craft malicious model repositories with poisoned configuration files that execute code when loaded by users.
Recommendations Update ModelScope to version 1.40.1 or later.

Exploit

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-84202
OPENSUSE-SU-2026:11736-1
OPENSUSE-SU-2026:11746-1

Affected Products

Modelscope