A set of high-severity vulnerabilities in Hugging Face’s diffusers library that allow a malicious model repository to silently execute arbitrary code on any machine that loads it. The flaws bypass trust_remote_code, the very safeguard designed to stop unreviewed code from running during the custom pipeline loading process, raising serious concerns for an AI ecosystem that has come to treat Hugging Face as foundational infrastructure. Hugging Face has rapidly evolved into what many call the “GitHub of the AI era,” with its libraries and repositories deeply embedded in development, research, and production environments worldwide. Because diffusers runs inside production pipelines, CI/CD systems, and container...
Læs hele artiklen hos kilden.
Kommentarer (0)
Ingen kommentarer ennå. Bli den første til å kommentere!