<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – NumPy (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/numpy.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/numpy-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – NumPy (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:57 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-27952 – Agenta is an open-source LLMOps platform. In Agenta-API prior to version 0.48.1,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27952</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27952</guid>
    <pubDate>Thu, 26 Feb 2026 02:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-27952</strong></p>
  <p>Agenta is an open-source LLMOps platform. In Agenta-API prior to version 0.48.1, a Python sandbox escape vulnerability existed in Agenta's custom code evaluator. Agenta used RestrictedPython as a sandboxing mechanism for user-supplied evaluator code, but incorrectly whitelisted the `numpy` package as safe within the sandbox. This allowed authenticated users to bypass the sandbox and achieve arbit…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27952">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-62608 – MLX is an array framework for machine learning on Apple silicon. Prior to versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62608</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62608</guid>
    <pubDate>Fri, 21 Nov 2025 19:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-62608</strong></p>
  <p>MLX is an array framework for machine learning on Apple silicon. Prior to version 0.29.4, there is a heap buffer overflow in mlx::core::load() when parsing malicious NumPy .npy files. Attacker-controlled file causes 13-byte out-of-bounds read, leading to crash or information disclosure. This issue has been patched in version 0.29.4.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62608">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-11039 – A pickle deserialization vulnerability exists in the Latex English error correct...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-11039</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-11039</guid>
    <pubDate>Thu, 20 Mar 2025 10:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-11039</strong></p>
  <p>A pickle deserialization vulnerability exists in the Latex English error correction plug-in function of binary-husky/gpt_academic versions up to and including 3.83. This vulnerability allows attackers to achieve remote command execution by deserializing untrusted data. The issue arises from the inclusion of numpy in the deserialization whitelist, which can be exploited by constructing a malicious…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-11039">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-34997 – joblib v1.4.2 was discovered to contain a deserialization vulnerability via the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34997</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34997</guid>
    <pubDate>Fri, 17 May 2024 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-34997</strong></p>
  <p>joblib v1.4.2 was discovered to contain a deserialization vulnerability via the component joblib.numpy_pickle::NumpyArrayWrapper().read_array(). NOTE: this is disputed by the supplier because NumpyArrayWrapper is only used during caching of trusted content.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34997">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-34072 – sagemaker-python-sdk is a library for training and deploying machine learning mo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34072</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34072</guid>
    <pubDate>Fri, 03 May 2024 11:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-34072</strong></p>
  <p>sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. The sagemaker.base_deserializers.NumpyDeserializer module before v2.218.0 allows potentially unsafe deserialization when untrusted data is passed as pickled object arrays. This consequently may allow an unprivileged third party to cause remote code execution, denial of service, affecting both…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34072">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-29216 – TensorFlow is an open source platform for machine learning. Prior to versions 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29216</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29216</guid>
    <pubDate>Sat, 21 May 2022 00:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-29216</strong></p>
  <p>TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, TensorFlow's `saved_model_cli` tool is vulnerable to a code injection. This can be used to open a reverse shell. This code path was maintained for compatibility reasons as the maintainers had several test cases where numpy expressions were used as arguments. However, given that the tool i…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29216">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-6446 – An issue was discovered in NumPy before 1.16.3. It uses the pickle Python module...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-6446</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-6446</guid>
    <pubDate>Wed, 16 Jan 2019 05:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-6446</strong></p>
  <p>An issue was discovered in NumPy before 1.16.3. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, as demonstrated by a numpy.load call. NOTE: third parties dispute this issue because it is a behavior that might have legitimate applications in (for example) loading serialized Python object arrays from trusted and aut…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-6446">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12852 – The numpy.pad function in Numpy 1.13.1 and older versions is missing input valid...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12852</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12852</guid>
    <pubDate>Tue, 15 Aug 2017 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12852</strong></p>
  <p>The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12852">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
