VYPR

Espnet

by Espnet

CVEs (1)

  • CVE-2026-90777HigSep 13, 2026
    risk 0.50cvss 8.8epss

    ESPnet before 202609 deserializes pretrained model checkpoints using torch.load with weights_only=False, allowing arbitrary code execution from attacker-supplied files. Attackers can craft malicious checkpoint files that execute code during deserialization when loaded through…