Junglewise Threat Intelligence

CVE-2025-3121: PYSEC-2025-196 - A vulnerability classified as problematic has been found in PyTorch 2.6.0. Affected is the function torch.jit.jit_module_from_flatbuffer. Th

CVE-2025-3121 · Severity: low · CVSS 3.1 · Published 2025-04-02

Technologies: torch (PyPI). Vendors: PyPI.

Executive brief

A vulnerability classified as problematic has been found in PyTorch 2.6.0. Affected is the function torch.jit.jit_module_from_flatbuffer. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

Affected products

  • PyPI torch

Related threats