<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – NumPy</title>
  <link>https://cvedaily.com/pages/tags/numpy.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/numpy.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – NumPy</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:57 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-34760 – vLLM is an inference and serving engine for large language models (LLMs). From v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34760</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34760</guid>
    <pubDate>Thu, 02 Apr 2026 20:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-34760</strong></p>
  <p>vLLM is an inference and serving engine for large language models (LLMs). From version 0.5.5 to before version 0.18.0, Librosa defaults to using numpy.mean for mono downmixing (to_mono), while the international standard ITU-R BS.775-4 specifies a weighted downmixing algorithm. This discrepancy results in inconsistency between audio heard by humans (e.g., through headphones/regular speakers) and a…</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34760">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-27952 – Agenta is an open-source LLMOps platform. In Agenta-API prior to version 0.48.1,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27952</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27952</guid>
    <pubDate>Thu, 26 Feb 2026 02:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-27952</strong></p>
  <p>Agenta is an open-source LLMOps platform. In Agenta-API prior to version 0.48.1, a Python sandbox escape vulnerability existed in Agenta's custom code evaluator. Agenta used RestrictedPython as a sandboxing mechanism for user-supplied evaluator code, but incorrectly whitelisted the `numpy` package as safe within the sandbox. This allowed authenticated users to bypass the sandbox and achieve arbit…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27952">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-62608 – MLX is an array framework for machine learning on Apple silicon. Prior to versio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62608</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62608</guid>
    <pubDate>Fri, 21 Nov 2025 19:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-62608</strong></p>
  <p>MLX is an array framework for machine learning on Apple silicon. Prior to version 0.29.4, there is a heap buffer overflow in mlx::core::load() when parsing malicious NumPy .npy files. Attacker-controlled file causes 13-byte out-of-bounds read, leading to crash or information disclosure. This issue has been patched in version 0.29.4.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62608">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-3145 – A vulnerability, which was classified as problematic, has been found in MindSpor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3145</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3145</guid>
    <pubDate>Thu, 03 Apr 2025 07:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-3145</strong></p>
  <p>A vulnerability, which was classified as problematic, has been found in MindSpore 2.5.0. Affected by this issue is the function mindspore.numpy.fft.rfft2. The manipulation leads to memory corruption. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3145">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-3144 – A vulnerability classified as problematic was found in MindSpore 2.5.0. Affected...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3144</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3144</guid>
    <pubDate>Thu, 03 Apr 2025 06:15:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-3144</strong></p>
  <p>A vulnerability classified as problematic was found in MindSpore 2.5.0. Affected by this vulnerability is the function mindspore.numpy.fft.hfftn. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3144">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-11039 – A pickle deserialization vulnerability exists in the Latex English error correct...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-11039</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-11039</guid>
    <pubDate>Thu, 20 Mar 2025 10:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-11039</strong></p>
  <p>A pickle deserialization vulnerability exists in the Latex English error correction plug-in function of binary-husky/gpt_academic versions up to and including 3.83. This vulnerability allows attackers to achieve remote command execution by deserializing untrusted data. The issue arises from the inclusion of numpy in the deserialization whitelist, which can be exploited by constructing a malicious…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-11039">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-34997 – joblib v1.4.2 was discovered to contain a deserialization vulnerability via the ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34997</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34997</guid>
    <pubDate>Fri, 17 May 2024 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-34997</strong></p>
  <p>joblib v1.4.2 was discovered to contain a deserialization vulnerability via the component joblib.numpy_pickle::NumpyArrayWrapper().read_array(). NOTE: this is disputed by the supplier because NumpyArrayWrapper is only used during caching of trusted content.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34997">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-34072 – sagemaker-python-sdk is a library for training and deploying machine learning mo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34072</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34072</guid>
    <pubDate>Fri, 03 May 2024 11:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-34072</strong></p>
  <p>sagemaker-python-sdk is a library for training and deploying machine learning models on Amazon SageMaker. The sagemaker.base_deserializers.NumpyDeserializer module before v2.218.0 allows potentially unsafe deserialization when untrusted data is passed as pickled object arrays. This consequently may allow an unprivileged third party to cause remote code execution, denial of service, affecting both…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34072">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-41890 – TensorFlow is an open source platform for machine learning. If `BCast::ToShape` ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41890</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41890</guid>
    <pubDate>Fri, 18 Nov 2022 22:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-41890</strong></p>
  <p>TensorFlow is an open source platform for machine learning. If `BCast::ToShape` is given input larger than an `int32`, it will crash, despite being supposed to handle up to an `int64`. An example can be seen in `tf.experimental.numpy.outer` by passing in large input to the input `b`. We have patched the issue in GitHub commit 8310bf8dd188ff780e7fc53245058215a05bdbe5. The fix will be included in T…</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-704</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41890">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-41884 – TensorFlow is an open source platform for machine learning. If a numpy array is ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41884</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41884</guid>
    <pubDate>Fri, 18 Nov 2022 22:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-41884</strong></p>
  <p>TensorFlow is an open source platform for machine learning. If a numpy array is created with a shape such that one element is zero and the others sum to a large number, an error will be raised. We have patched the issue in GitHub commit 2b56169c16e375c521a3bc8ea658811cc0793784. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and Tensor…</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-670</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41884">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-29216 – TensorFlow is an open source platform for machine learning. Prior to versions 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-29216</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-29216</guid>
    <pubDate>Sat, 21 May 2022 00:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-29216</strong></p>
  <p>TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, TensorFlow's `saved_model_cli` tool is vulnerable to a code injection. This can be used to open a reverse shell. This code path was maintained for compatibility reasons as the maintainers had several test cases where numpy expressions were used as arguments. However, given that the tool i…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-29216">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-41496 – Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy &lt; 1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41496</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41496</guid>
    <pubDate>Fri, 17 Dec 2021 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-41496</strong></p>
  <p>Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a Denial of Service attacks by carefully constructing an array with negative values. NOTE: The vendor does not agree this is a vulnerability; the negative dimensions can only be created by an already privileged user (or internally)</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41496">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-41495 – Null Pointer Dereference vulnerability exists in numpy.sort in NumPy &amp;lt and 1.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41495</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41495</guid>
    <pubDate>Fri, 17 Dec 2021 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-41495</strong></p>
  <p>Null Pointer Dereference vulnerability exists in numpy.sort in NumPy &lt and 1.19 in the PyArray_DescrNew function due to missing return-value validation, which allows attackers to conduct DoS attacks by repetitively creating sort arrays. NOTE: While correct that validation is missing, an error can only occur due to an exhaustion of memory. If the user can exhaust memory, they are already privile…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-476</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41495">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-34141 – An incomplete string comparison in the numpy.core component in NumPy before 1.22...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-34141</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-34141</guid>
    <pubDate>Fri, 17 Dec 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-34141</strong></p>
  <p>An incomplete string comparison in the numpy.core component in NumPy before 1.22.0 allows attackers to trigger slightly incorrect copying by constructing specific string objects. NOTE: the vendor states that this reported code behavior is "completely harmless."</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-697</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-34141">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-33430 – A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDesc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33430</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33430</guid>
    <pubDate>Fri, 17 Dec 2021 19:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-33430</strong></p>
  <p>A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDescr_int function of ctors.c when specifying arrays of large dimensions (over 32) from Python code, which could let a malicious user cause a Denial of Service. NOTE: The vendor does not agree this is a vulneraility; In (very limited) circumstances a user may be able provoke the buffer overflow, the user is most likely al…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33430">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-6446 – An issue was discovered in NumPy before 1.16.3. It uses the pickle Python module...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-6446</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-6446</guid>
    <pubDate>Wed, 16 Jan 2019 05:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-6446</strong></p>
  <p>An issue was discovered in NumPy before 1.16.3. It uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, as demonstrated by a numpy.load call. NOTE: third parties dispute this issue because it is a behavior that might have legitimate applications in (for example) loading serialized Python object arrays from trusted and aut…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-6446">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2014-1859 – (1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-1859</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-1859</guid>
    <pubDate>Mon, 08 Jan 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2014-1859</strong></p>
  <p>(1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2e.py, and (4) lib/tests/test_io.py in NumPy before 1.8.1 allow local users to write to arbitrary files via a symlink attack on a temporary file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-1859">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2014-1858 – __init__.py in f2py in NumPy before 1.8.1 allows local users to write to arbitra...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-1858</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-1858</guid>
    <pubDate>Mon, 08 Jan 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2014-1858</strong></p>
  <p>__init__.py in f2py in NumPy before 1.8.1 allows local users to write to arbitrary files via a symlink attack on a temporary file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-1858">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12852 – The numpy.pad function in Numpy 1.13.1 and older versions is missing input valid...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12852</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12852</guid>
    <pubDate>Tue, 15 Aug 2017 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12852</strong></p>
  <p>The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12852">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
