What is CVE-2026-75104?
A vulnerability in Hugging Face Transformers allows reading arbitrary files outside the model directory due to insufficient validation of shard filenames in checkpoint index files. Attackers can exploit this by supplying malicious index files containing parent-directory references or absolute paths, which are joined without proper validation.
Azərbaycanca: Hugging Face Transformers kitabxanasında yoxlama nöqtəsi indeks fayllarında 'shard' adlarının düzgün yoxlanılmaması zəifliyi aşkarlanıb. Bu, təcavüzkara model qovluğundan kənarda ixtiyari faylları oxumağa imkan verir. İndeks faylında valideyn qovluq keçidləri və ya mütləq yolların istifadəsi ilə fayl oxuma həyata keçirilə bilər.
Related CVEs
link basis: same weakness class CWE-22; shared vendor: Hugging Face
FAQ1
What type of attack can an attacker perform by exploiting CVE-2026-75104 in Hugging Face Transformers?
The attacker can read arbitrary files outside the model directory by supplying malicious checkpoint index files with parent-directory references or absolute paths in 'shard' filenames, which are joined without proper validation.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.