highVulnerability
GHSA-gfmx-qqqh-f38q
## Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-3m4q-jmj6-r34q. This link is maintained to preserve external references. ## Original Description Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras model file utilizing HDF5 external dataset references.
Properties
- ghsa_id
- GHSA-gfmx-qqqh-f38q
- summary
- Duplicate Advisory: Keras vulnerable to arbitrary file read in the model loading mechanism (HDF5 integration)
- severity
- high
- cve_id
- GHSA-gfmx-qqqh-f38q
- is_ghsa_only
- true
- ghsa_published
- 2026-02-12T00:31:03Z
- source_url
- https://github.com/advisories/GHSA-gfmx-qqqh-f38q
- ghsa_updated
- 2026-02-18T22:38:51Z
Related Entities (3)
HAS_WEAKNESS (1)
→[Weakness]External Control of File Name or Path
REPORTED_BY (1)
→[Source]GitHub Advisory Database
AFFECTS (1)
→[Software]pip/keras
Explore deeper with Ninja Signal's threat intelligence graph