Intel

AIKIDO-2026-10662

nemo-toolkit is vulnerable to Unsafe Deserialization

Unsafe Deserialization Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
Published Apr 30, 2026

88

High Risk

This Affects:

PYTHONnemo-toolkit
0.0.1 - 2.7.2
Fixed in 2.7.3
Are you affected? Scan for Free

TL;DR

Affected versions of this package contain multiple paths to arbitrary code execution in model handling: pickle data is deserialized without restricting which classes are loaded, and a command-line option is interpreted directly as Python code at runtime.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

nemo-toolkit is vulnerable to Unsafe Deserialization in versions 0.0.1 - 2.7.2.

How to fix this

Upgrade the nemo-toolkit library to the patch version.