highVulnerability

GHSA-gfmx-qqqh-f38q

## Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-3m4q-jmj6-r34q. This link is maintained to preserve external references. ## Original Description Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras model file utilizing HDF5 external dataset references.

Properties

ghsa_id
GHSA-gfmx-qqqh-f38q
summary
Duplicate Advisory: Keras vulnerable to arbitrary file read in the model loading mechanism (HDF5 integration)
severity
high
cve_id
GHSA-gfmx-qqqh-f38q
is_ghsa_only
true
ghsa_published
2026-02-12T00:31:03Z
source_url
https://github.com/advisories/GHSA-gfmx-qqqh-f38q
ghsa_updated
2026-02-18T22:38:51Z

Related Entities (3)

HAS_WEAKNESS (1)

[Weakness]External Control of File Name or Path

REPORTED_BY (1)

[Source]GitHub Advisory Database

AFFECTS (1)

[Software]pip/keras

Explore deeper with Ninja Signal's threat intelligence graph