CVE-2025-1550 describes a critical arbitrary code execution vulnerability in the Keras Model.load_model function, affecting Keras versions. An attacker can craft a malicious .keras archive, even with safe_mode enabled, to execute arbitrary Python code by manipulating the config.json file within the archive. This vulnerability carries a CVSS score of 9.8 (CRITICAL) due to its network-based attack vector, low attack complexity, and complete compromise of confidentiality, integrity, and availability. While not yet on the CISA KEV list, public exploit code exists on ExploitDB (EDB-52359) and Nuclei templates are available, indicating a high potential for exploitation, despite limited community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 3.0.0, < 3.8.0CPE matchmatch criteria | cpe:2.3:a:keras:keras:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025CVE-2025-1550 bypass via reuse of internal Keras functionality
Aug 11, 2025Arbitrary Code Execution via Crafted Keras Config for Model Loading
Mar 11, 2025keras: Arbitrary Code Execution via Crafted Keras Config for Model Loading
Mar 11, 2025Arbitrary Code Execution via Crafted Keras Config for Model Loading
Mar 11, 2025