VU#456290: Hugging Face Transformers library writes remote code to disk prior to consent check

Overview A vulnerability in the Hugging Face Transformers library (versions 4.57.0 to 5.16.1) allows remote, attacker‑controlled Python files to be written to the local disk without user authorization. The library performs a remote module fetch and local cache write before evaluating the…

aidevsecurity

Sources

VU#456290: Hugging Face Transformers library writes remote code to disk prior to consent check · TechNews