Monai's vulnerability footprint centers on the Medical Open Network for AI framework, a specialized toolkit for deep learning in medical imaging, with the durable signal centered on data-handling flaws such as untrusted deserialization and path traversal. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Monai over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-58757HIGH MONAI (Medical Open Network for AI) is an AI toolkit for health care imaging. In versions up to and including 1.5.0, the `pickle_operations` function in `monai/data/utils.py` autom | Sep 9, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-58755HIGH MONAI (Medical Open Network for AI) is an AI toolkit for health care imaging. The extractall function `zip_file.extractall(output_dir)` is used directly to process compressed files | Sep 9, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-58756HIGH MONAI (Medical Open Network for AI) is an AI toolkit for health care imaging. In versions up to and including 1.5.0, in `model_dict = torch.load(full_path, map_location=torch.devic | Sep 9, 2025 | 8.8 | 27 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Monai.
Media articles that mention a CVE ID that affects a product developed by Monai — matched by CVE ID, not by vendor name.