Hugging Face's logo Hugging Face
  • Models
  • Datasets
  • Spaces
  • Buckets new
  • Docs
  • Enterprise
  • Pricing
    • Website
      • Tasks
      • HuggingChat
      • Collections
      • Languages
      • Organizations
    • Community
      • Blog
      • Posts
      • Daily Papers
      • Learn
      • Discord
      • Forum
      • GitHub
    • Solutions
      • Team & Enterprise
      • Hugging Face PRO
      • Enterprise Support
      • Inference Providers
      • Inference Endpoints
      • Storage Buckets

  • Log In
  • Sign Up

WolfpackArmy
/
pytorch-pickle-rce-poc

Model card Files Files and versions
xet
Community
pytorch-pickle-rce-poc
11.5 kB
Ctrl+K
Ctrl+K
  • 1 contributor
History: 6 commits

This model has 1 file scanned as unsafe.

WolfpackArmy's picture
WolfpackArmy
Upload README.md with huggingface_hub
df855b8 verified about 2 months ago
  • .gitattributes
    1.52 kB
    initial commit about 2 months ago
  • README.md
    714 Bytes
    Upload README.md with huggingface_hub about 2 months ago
  • benign_model.pt
    2 kB
    xet
    Upload benign_model.pt with huggingface_hub about 2 months ago
  • benign_torchscript.pt
    3.76 kB
    xet
    Upload benign_torchscript.pt with huggingface_hub about 2 months ago
  • poc_evil_statedict.pt
    2.17 kB
    xet
    Upload poc_evil_statedict.pt with huggingface_hub about 2 months ago
  • poc_torchsave.pt

    Detected Pickle imports (1)

    • "__builtin__.eval"

    How to fix it?

    1.36 kB
    xet
    Upload poc_torchsave.pt with huggingface_hub about 2 months ago