CNNVD-202509-1470 Information

CNNVD ID

CNNVD-202509-1470

CVE-2025-58757

  • CNNVD Published: 2025-09-09

Description (Chinese)

MONAI是Project MONAI开源的一个医疗成像AI工具包。 MONAI 1.5.0及之前版本存在安全漏洞,该漏洞源于pickle_operations函数处理不当,可能导致反序列化漏洞和代码执行。

Description (English)

MONAI is a medical imaging AI toolkit from Project MONAI Open Source. MONAI 1.5.0 and previous versions had a security loophole, which stemmed from the inappropriate handling of the Pickle operations function, which could lead to anti-serialization loopholes and code execution.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Project MONAI

Published

2025-09-09

Last Modified

2026-02-24

References

https://github.com/Project-MONAI/MONAI/security/advisories/GHSA-p8cm-mm2v-gwjm https://access.redhat.com/security/cve/cve-2025-58757

Share on: