CVE-2026-17513: Ggml-Org Whisper.cpp
Low severity, CVSS 3.3. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability was found in ggml-org whisper.cpp 95ea8f9b. Affected is the function ggml_ftype_to_ggml_type of the file ggml/src/ggml.c. The manipulation of the argument ftype results in reachable assertion. The attack requires a local approach. The project was informed of the problem early through an issue report but has not responded yet.
Affected products
- Ggml-Org Whisper.cpp: version 95ea8f9b only
Published 2026-07-27. Last modified 2026-07-27.