rootpwn

high · CVSS v3 7.8 · CVSS v4 8.5 · EPSS 0.00136

CVE-2026-100845

MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the NumpyReader class that unconditionally uses n…

Description

MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the NumpyReader class that unconditionally uses numpy.load with allow_pickle=True when loading .npy and .npz files. Attackers can craft malicious .npy files with pickle payloads that execute arbitrary code when loaded through MONAI's standard data pipeline.

Scores

Severity
high
CVSS v2
7.2
CVSS v3
7.8
CVSS v4
8.5
EPSS
0.00136

← All CVEs