Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38331
HistoryDec 05, 2022 - 5:12 a.m.

Arbitrary Code Execution

2022-12-0505:12:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
arbitrary code execution
torch
improper validation
account takeover
malicious code

0.002 Low

EPSS

Percentile

61.4%

torch is vulnerable to arbitrary code execution. The vulnerability is due to improper validation of input during eval() in annotations.py which allows an attacker to take over an existing account and execute malicious code into the system.

CPENameOperatorVersion
torchle1.13.0
torchle1.13.0

0.002 Low

EPSS

Percentile

61.4%