CVE-2026-1669: Keras
High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras model file utilizing HDF5 external dataset references.
Affected products
- Keras Keras: from 3.0.0, up to and including 3.13.1
Published 2026-02-11. Last modified 2026-07-15.