View Ridge Security
Back to Cyber HoseVulnerabilities & CVEs

Unsafe Deserialization Vulnerability in Keras TorchModuleWrapper

🔓 VULNERABILITIES & CVEs

  • Unsafe Deserialization Vulnerability in Keras TorchModuleWrapper — CVE Threat Intelligence CVE-2026-12484 (CVSS 7.8) affects keras.layers.TorchModuleWrapper.from_config and involves unsafe deserialization.
    • This vulnerability could allow attackers to execute arbitrary code remotely by exploiting unsafe deserialization in Keras.
    • Users of Keras with TorchModuleWrapper should prioritize patching to mitigate risk.

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check