LLaMA Factory Vulnerabilities
pip MLOps 53
Risk Score
4
Total CVEs
2
Critical
pip
Ecosystem
Oct 7, 2025
Last CVE
75%
Patch Rate
167d
Avg Time to Patch
71,326 stars
8,710 forks
1,016 issues
1 dependents
Last push May 13, 2026
View on GitHub
Known Vulnerabilities (4 total, page 1 of 1)
Severity CVE ID Summary CVSS Published
HIGH CVE-2025-61784 LLaMA-Factory: SSRF+LFI in multimodal chat API 8.1 Oct 7, 2025 CRITICAL CVE-2025-53002 LLaMA-Factory: RCE via unsafe checkpoint deserialization 9.8 Jun 26, 2025 HIGH CVE-2025-46567 LLaMA-Factory: RCE via torch.load() unsafe deserialization 7.8 May 1, 2025 CRITICAL CVE-2024-52803 LlamaFactory: RCE via OS command injection in training 9.8 Nov 21, 2024 Monitor LLaMA Factory in your stack
Get instant alerts when new vulnerabilities affect LLaMA Factory. CISO analysis, ATLAS technique mappings, and compliance reports included.
Start Monitoring