inference is vulnerable to Remote Code Execution
88
High Risk
The self-hosted inference server binds to all network interfaces (0.0.0.0) by default while allowing custom Python execution in workflows without authentication. Anyone able to reach the server submits a workflow containing a custom Python block and executes arbitrary code on the host. This leaves default self-hosted deployments open to unauthenticated remote compromise. The fix binds the server to the loopback address by default.
You are affected if you are using a version that falls within the vulnerable range and you run the self-hosted inference server reachable from an untrusted network with custom Python execution in workflows enabled.
inference is vulnerable to Remote Code Execution in versions 0.15.0 - 1.5.2.
Upgrade the inference library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.