Skip to content

Transformers security advisories

31 advisories · 11 critical or high in 12 months · latest Aug 2

31 advisories

DateAdvisory
Aug 2Transformers save_pretrained path traversal allows arbitrary file writes through chat template names
CVE-2026-9856High7.1fixed in 5.10.0
Jun 3huggingface/transformers: Arbitrary Code Execution During Model Initialization in the LightGlue Model Loading Path
CVE-2026-5241High8.0fixed in 5.5.0
May 26HuggingFace transformers vulnerable to remote code execution
CVE-2026-4372High7.8fixed in 5.3.0
Apr 7HuggingFace Transformers allows for arbitrary code execution in the `Trainer` class
CVE-2026-1839Medium6.5fixed in 5.0.0rc3
Dec 232025Hugging Face Transformers HuBERT convert_config Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in that the targ
CVE-2025-14928High7.8no fix yet
Dec 232025Hugging Face Transformers X-CLIP Checkpoint Conversion Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vuln
CVE-2025-14929High7.8no fix yet
Dec 232025Hugging Face Transformers GLM4 Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in that the ta
CVE-2025-14930High7.8no fix yet
Dec 232025Hugging Face Transformers Perceiver Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in
CVE-2025-14920High7.8no fix yet
Dec 232025Hugging Face Transformers Transformer-XL Model Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerabilit
CVE-2025-14921High7.8no fix yet
Dec 232025Hugging Face Transformers megatron_gpt2 Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in th
CVE-2025-14924High7.8no fix yet
Dec 232025Hugging Face Transformers SEW convert_config Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in that the target
CVE-2025-14926High7.8no fix yet
Dec 232025Hugging Face Transformers SEW-D convert_config Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in that the targe
CVE-2025-14927High7.8no fix yet
Sep 232025Hugging Face Transformers vulnerable to Regular Expression Denial of Service (ReDoS) in the AdamWeightDecay optimizer
CVE-2025-6921Medium5.3fixed in 4.53.0
Sep 142025Hugging Face Transformers library has Regular Expression Denial of Service
CVE-2025-6051Medium5.3fixed in 4.53.0
Sep 122025Hugging Face Transformers is vulnerable to ReDoS through its MarianTokenizer
CVE-2025-6638Medium5.3fixed in 4.53.0
Aug 62025Hugging Face Transformers Regular Expression Denial of Service (ReDoS) vulnerability
CVE-2025-5197Medium5.3fixed in 4.53.0
Jul 112025Transformers is vulnerable to ReDoS attack through its DonutProcessor class
CVE-2025-3933Medium5.3fixed in 4.52.1
Jul 72025Transformers vulnerable to ReDoS attack through its SETTING_RE variable
CVE-2025-3262Medium5.3fixed in 4.51.0
Jul 72025Transformers vulnerable to ReDoS attack through its get_imports() function
CVE-2025-3264Medium5.3fixed in 4.51.0
Jul 72025Transformers's Improper Input Validation vulnerability can be exploited through username injection
CVE-2025-3777Low3.5fixed in 4.52.1
Jul 72025Transformers's ReDoS vulnerability in get_configuration_file can lead to catastrophic backtracking
CVE-2025-3263Medium5.3fixed in 4.51.0
May 192025Hugging Face Transformers Regular Expression Denial of Service
CVE-2025-2099Medium5.3fixed in 4.50.0
Apr 292025Transformers Regular Expression Denial of Service (ReDoS) vulnerability
CVE-2025-1194Medium4.3fixed in 4.50.0
Mar 202025Transformers Regular Expression Denial of Service (ReDoS) vulnerability
CVE-2024-12720Medium5.3fixed in 4.48.0
Nov 232024Deserialization of Untrusted Data in Hugging Face Transformers
CVE-2024-11394High8.8fixed in 4.48.0
Nov 232024Deserialization of Untrusted Data in Hugging Face Transformers
CVE-2024-11392High7.5fixed in 4.48.0
Nov 232024Deserialization of Untrusted Data in Hugging Face Transformers
CVE-2024-11393High8.8fixed in 4.48.0
Apr 102024Transformers Deserialization of Untrusted Data vulnerability
CVE-2024-3568Low3.4fixed in 4.38.0
Dec 202023transformers has a Deserialization of Untrusted Data vulnerability
CVE-2023-7018High7.8fixed in 4.36.0
Dec 192023transformers has a Deserialization of Untrusted Data vulnerability
CVE-2023-6730Critical9.0fixed in 4.36.0
May 182023transformers has Insecure Temporary File
CVE-2023-2800Medium4.7fixed in 4.30.0
About Transformers

Model definitions for text, vision, audio and multimodal models.

Packages watched: transformers (PyPI).

Hugging Face elsewhere on fru.dev: Acquisitions · Paydays · Releases · Repos · Trending

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.