Executive brief
TorchServe vulnerable to bypass of allowed_urls configuration
Affected products
- PyPI torchserve
Junglewise Threat Intelligence
CVE-2024-35198 · Severity: low · CVSS 3.1 · Published 2026-06-29
Technologies: torchserve (PyPI). Vendors: PyPI.
TorchServe vulnerable to bypass of allowed_urls configuration