Low severity3.1NVD Advisory· Published Jul 13, 2026· Updated Jul 14, 2026
CVE-2026-15605
CVE-2026-15605
Description
A security vulnerability has been detected in wandb 0.25.2.dev1. Affected is the function ArtifactManifestEntry.download in the library wandb/sdk/lib/hashutil.py of the component Artifact Integrity Validation. The manipulation leads to use of weak hash. The attack may be initiated remotely. A high degree of complexity is needed for the attack. The exploitability is told to be difficult. The pull request to fix this issue awaits acceptance.
Affected products
1Patches
Vulnerability mechanics
References
6News mentions
0No linked articles in our index yet.