Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-5120

44
FAUCET Score

CVE-2025-5120 is a critical sandbox escape vulnerability in huggingface/smolagents version 1.14.0, specifically within the local_python_executor.py module. This flaw allows attackers to bypass intended security restrictions and achieve remote code execution (RCE) on the host system. With a CVSS score of 10.0, it presents a severe risk due to its network-based attack vector, low attack complexity, and complete compromise of confidentiality, integrity, and availability. While there is no evidence of active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered community attention with at least one public mention. The issue is resolved in version 1.17.0, and immediate upgrade is recommended to protect AI/ML deployments.

Impacted Technologies

VendorProductVersion(s)CPE
1.14.0CPE matchmatch criteria
cpe:2.3:a:huggingface:smolagents:1.14.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

7.6HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:H/A:L

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
HIGH
Availability Impact
LOW
Exploitability Score
2.8
Impact Score
4.7
CvssVersion
3.0

Exploit Intelligence

EPSS Score
18.65%
Probability of exploitation in next 30 days
EPSS Percentile
97.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.1865 is in the 93rd percentile among its peer group of 36,862 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

github_advisorypatch availablevia nvd_reference
View patch
pippatch availablevia ghsa
Product: smolagentsFixed in: 1.17.0

Vendor Advisories (1)

pipGHSA-6v92-r5mx-h5fxcritical

smolagents has Sandbox Escape Vulnerability in the local_python_executor.py Module

Jul 27, 2025

References

github.com / huggingface/smolagents/commit/33a942e62b6fbf6a35d41f1c735bda2d64c163d0
Patch
huntr.com / bounties/63ab1cfe-b573-4cf5-a7d3-fb6c957e34b0
ExploitThird Party Advisory