CVE-2026-38950
n/a n/a 취약점
An issue in ESA AnomalyMatch before 1.3.1 allow attackers to execute arbitrary code via crafted model checkpoint files. The affected components load model files from session directories using torch.load() with unrestricted deserialization.
- 대응 우선순위
- 점검
- CVSS
- 7.8
- EPSS
- 0.14% 백분위 4.17% · 2026.08.04 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.06.02