Medium severityNVD Advisory· Published Jun 17, 2026· Updated Jun 23, 2026
CVE-2026-54533
CVE-2026-54533
Description
vantage6 is an open-source infrastructure for privacy preserving analysis. Prior to version 5.0.0, malicious algorithms can potentially access other algorithms input and output files. Version 5.0.0 fixes the issue. As a workaround, verify and restrict the algorithm containers that are allowed to run on the node.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
vantage6PyPI | < 5.0.0 | 5.0.0 |
Affected products
1Patches
Vulnerability mechanics
References
6- github.com/advisories/GHSA-x9f6-9rvm-mmrgghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2026-54533ghsaADVISORY
- docs.vantage6.ai/usage/running-the-node/securitynvdWEB
- github.com/vantage6/vantage6/blob/main/docs/release_notes.rstnvdWEB
- github.com/vantage6/vantage6/issues/1932nvdWEB
- github.com/vantage6/vantage6/security/advisories/GHSA-x9f6-9rvm-mmrgnvdWEB
News mentions
0No linked articles in our index yet.