// posture advisories 100 provenance 75 resolution 80 xyz safety 100 load safety 100 supply chain 100 scanner trust 100 code execution 25 fig. 01 — posture on eight axes, 100 is clean. Weakest: code execution at 25. // the finding not scored no advisory applies to a version this model pins LOW
MEDIUM config.json declares `auto_map` — from_pretrained(trust_remote_code=True) executes Python shipped in this repo.
INFO authored against vulnerable: further detail on this finding is available to account holders.INFO inferred stack advisories: further detail on this finding is available to account holders.2 more findings on this model.
Author lmsys Downloads 85,753 Remote code ships Python that runs on load (trust_remote_code) // dependencies 2 direct, 2 with findings, 28 reachable
Package Evidence Advisories Worst transformers direct, runtime 23 none pinned annotated-doc transitive, transitive 0 none pinned anyio direct, install 0 hidden certifi direct, install 0 hidden click direct, install 0 hidden colorama direct, install 0 hidden exceptiongroup direct, install 0 hidden filelock direct, install 0 hidden
Risk computed 2026-09-24 at 07:49 UTC. Dependencies come from the model's requirements, its declared loader and the code it ships; advisories from NVD, GHSA and OSV.
Model risk is computed from the model's declared and observed Python dependencies and the code it ships. If a finding is wrong, tell us. Report an issue with this page