Project-monai

Monai

8 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.27%
  • Veröffentlicht 27.09.2026 01:28:41
  • Zuletzt bearbeitet 08.10.2026 16:17:00

MONAI before 1.5.2 contains a deserialization of untrusted data vulnerability in the algo_from_pickle function in monai/auto3dseg/utils.py. The function reads a .pkl file and passes its contents to pickle.loads without validating the data source or c...

Exploit
  • EPSS 0.14%
  • Veröffentlicht 27.09.2026 01:28:40
  • Zuletzt bearbeitet 30.09.2026 15:25:51

MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the NumpyReader class that unconditionally uses numpy.load with allow_pickle=True when loading .npy and .npz files. Attackers can craft malicious .npy files with pickle payloads t...

Exploit
  • EPSS 0.64%
  • Veröffentlicht 27.09.2026 01:28:39
  • Zuletzt bearbeitet 30.09.2026 15:33:29

MONAI before 1.6.0 is vulnerable to OS command injection in the nnUNetV2Runner component (monai.apps.nnunet.nnunetv2_runner). User-controlled values taken from the YAML configuration file (notably dataset_name_or_id) and from CLI/kwargs arguments are...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 27.09.2026 01:28:38
  • Zuletzt bearbeitet 30.09.2026 17:49:34

MONAI through 1.6.0 contains an eval injection vulnerability in _get_fake_spatial_shape() in monai/bundle/scripts.py. The function validates shape expressions with a helper that walks the AST and only collects ast.Name nodes, rejecting any name other...

Exploit
  • EPSS 0.19%
  • Veröffentlicht 27.09.2026 01:28:38
  • Zuletzt bearbeitet 30.09.2026 16:17:02

MONAI versions before 1.6.0 contain a remote code execution vulnerability in the algo_from_pickle() function due to unsafe pickle.loads() deserialization in monai/auto3dseg/utils.py. Attackers can craft malicious pickle files that execute arbitrary s...

  • EPSS 0.13%
  • Veröffentlicht 27.09.2026 01:28:37
  • Zuletzt bearbeitet 30.09.2026 17:50:08

In MONAI 1.6.0, PersistentDataset (monai/data/dataset.py) explicitly rejects the combination track_meta=True with weights_only=True, forcing users who cache MetaTensors (the default tensor type in MONAI >= 1.0) to run torch.load(hashfile, weights_onl...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 27.09.2026 01:28:36
  • Zuletzt bearbeitet 30.09.2026 15:40:44

MONAI through 1.6.0 contains a remote code execution vulnerability in the bundle configuration engine that resolves _target_ values to arbitrary importable callables without an allow list and passes $ expressions to Python eval(). Attackers can publi...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 07.01.2026 22:27:19
  • Zuletzt bearbeitet 02.02.2026 15:13:47

MONAI (Medical Open Network for AI) is an AI toolkit for health care imaging. In versions up to and including 1.5.1, a Path Traversal (Zip Slip) vulnerability exists in MONAI's `_download_from_ngc_private()` function. The function uses `zipfile.ZipFi...