torchserve is vulnerable to Improper Access Control
50
Medium Risk
Affected versions of torchserve are vulnerable to an overpermissive model server configuration. The model server listens on all interfaces (0.0.0.0), allowing anyone on the local network (such as other containers) to access the Model Server. The patched version ensures that the Model Server listens on localhost only.
You are affected if you are use a vulnerable version of torchserve.
torchserve is vulnerable to Improper Access Control in versions 0.1.1 - 0.10.0.
Upgrade torchserve to the patch version (version 0.11.0).
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant