Skip to content
PyTorchPYSEC-2025-204

pytorch v2.8.0 was discovered to display unexpected behavior when the components torch.rot90 and torch.randn_like are used together.

High7.5CVE-2025-55552 · Published Sep 25, 2025 · updated May 20, 2026

Source advisory

Affected versions

PackageAffectedFixed in
torch
PyPI
< 2.9.02.9.0
Details and references

pytorch v2.8.0 was discovered to display unexpected behavior when the components torch.rot90 and torch.randn_like are used together.

CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity from
the CVSS score
Also known as
BIT-pytorch-2025-55552, CVE-2025-55552

More PyTorch advisories

All PyTorch

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.