CVE-2023-38671: Paddlepaddle

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Heap buffer overflow in paddle.trace in PaddlePaddle before 2.5.0. This flaw can lead to a denial of service, information disclosure, or more damage is possible.

Affected products

Published 2023-07-26. Last modified 2026-06-17.