ModelScan Bypass PoC โ mailcap.test
Security research for responsible disclosure via Huntr MFV program.
Vulnerability
mailcap.test not in modelscan blocklist. Reports "No issues found" but triggers calls os.system() to execute mailcap entries for each MIME type..
Impact: HIGH
Reproduction
pip install modelscan && modelscan scan -p bypass_poc.pkl
# "No issues found!"
Inference Providers NEW
This model isn't deployed by any Inference Provider. ๐ Ask for provider support