peter bassill · operator
$ cve CVE-2020-13092 JSON

CVE-2020-13092

9.8
CRITICAL · CVSS 3.1 · EPSS 3.4% (pctl 88)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

scikit-learn (aka sklearn) through 0.23.0 can unserialize and execute commands from an untrusted file that is passed to the joblib.load() function, if __reduce__ makes an os.system call. NOTE: third parties dispute this issue because the joblib.load() function is documented as unsafe and it is the user's responsibility to use the function in a secure manner

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS3.36% — more likely to be exploited than 88% of all CVEs
WeaknessCWE-502
On CISA KEVno
Public exploitnone known
Published2020-05-15
Last modified2026-06-17

Affected (1)

VendorProduct
scikit-learnscikit-learn

References

→ the Explorer  ·  watch your stack  ·  NVD