A critical arbitrary code execution vulnerability in Unsloth Studio allowed malicious Hugging Face model repositories to run attacker-controlled Python code when a user merely selected a model in the interface. Unsloth fixed the issue in version 2026.6.9, and users running Studio should upgrade immediately. Researchers at Pillar Security found... Weiterlesen
Intelligence View
Critical Unsloth Studio Flaw Executes Malicious Code When Users Select Hugging Face Models
A critical arbitrary code execution vulnerability in Unsloth Studio allowed malicious Hugging Face model repositories to run attacker-controlled Python code when a user merely selected a model in the interface. Unsloth fixed the issue in…
SOCIAL SHARE CARD GENERATOR