Insecure Temporary File in GitHub repository huggingface/transformers prior to 4.30.0.
Creating and using insecure temporary files can leave application and system data vulnerable to attack.
Link | Tags |
---|---|
https://huntr.dev/bounties/a3867b4e-6701-4418-8c20-3c6e7084a44a | patch third party advisory exploit |
https://github.com/huggingface/transformers/commit/80ca92470938bbcc348e2d9cf4734c7c25cb1c43 | patch |