A arbitrary code injection vulnerability in TensorFlow's Keras framework (<2.13) allows attackers to execute arbitrary code with the same permissions as the application using a model that allow arbitrary code irrespective of the application.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| keras(PyPI) | 0 | 2.13.1rc0 | N/A |
CVSS Metrics