tf-keras is vulnerable to Deserialization of Untrusted Data
88
High Risk
Affected versions of this package are vulnerable to Arbitrary Code Execution due to unsafe deserialization via np.load with allow_pickle=True enabled. Attackers can exploit this by crafting a malicious file containing pickled payloads, which execute arbitrary code during deserialization when the file is processed by the vulnerable class. It could lead to full system compromise if the application processes untrusted files.
You are affected if you are using a version that falls within the vulnerable range.
tf-keras is vulnerable to Deserialization of Untrusted Data in versions 2.15.0 - 2.20.0.
Upgrade the tf-keras library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant