Latest news

Critical HuggingFace Transformers Flaw CVE-2026-4372 Enables Silent RCE — 232 Million Installs at Risk
AI

Critical HuggingFace Transformers Flaw CVE-2026-4372 Enables Silent RCE — 232 Million Installs at Risk

8 June 2026 dark6

A critical RCE vulnerability in HuggingFace Transformers (CVE-2026-4372) allows attackers to silently execute code by loading a malicious AI model,...
Critical Vulnerability Threatens the Core of MLflow
AI

Critical Vulnerability Threatens the Core of MLflow

6 December 2023 dark6

Explore the profound implications of CVE-2023-43472, a critical vulnerability in MLflow, unraveling the threats to machine learning models and data...