CVE-2024-3660: A arbitrary code injection vulnerability in TensorFlow's Keras framewo ...

Severity: Critical

CVSS Score: 9.8

A arbitrary code injection vulnerability in TensorFlow's Keras framework (<2.13) allows attackers to execute arbitrary code with the same permissions as the application using a model that allow arbitrary code irrespective of the application.