Executive brief
Keras is vulnerable to arbitrary local file loading and Server-Side Request Forgery
Affected products
- PyPI keras
Junglewise Threat Intelligence
CVE-2025-12058 · Severity: medium · CVSS 4 · Published 2026-07-07
Technologies: keras (PyPI). Vendors: PyPI.
Keras is vulnerable to arbitrary local file loading and Server-Side Request Forgery