CVE-2026-75104: Huggingface Transformers
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Hugging Face Transformers fails to validate shard filenames in checkpoint index files, allowing attackers to read arbitrary files outside the model directory. Attackers can supply malicious index files with parent-directory references or absolute paths that are joined without validation, enabling file disclosure and filesystem reconnaissance.
Affected products
- Huggingface Transformers: up to and including 5.15.0
Published 2026-08-17. Last modified 2026-09-24.