Executive brief
Skops has Inconsistent Trusted Type Validation that Enables Hidden `operator` Methods Execution
Affected products
- PyPI skops
Junglewise Threat Intelligence
CVE-2025-54412 · Severity: medium · CVSS 4 · Published 2026-07-07
Technologies: skops (PyPI). Vendors: PyPI.
Skops has Inconsistent Trusted Type Validation that Enables Hidden `operator` Methods Execution