GHSA-997v-r4v7-9f3g
MODERATECVE-2026-15529A vulnerability was detected in yzhao062 pyod 3.5.0/3.5.1/3.5.2. Affected is the function pyod.utils.persistence.load of the file pyod/utils/persistence.py. Performing a manipulation of the argument path results in deserialization. The attack can be initiated remotely. The pull request to fix this issue requires some minor changes.
- Affected
- >= 3.5.0, < 3.6.2
- Fixed in
- 3.6.2
- Weakness
- CWE-20
- Published
- 2026-07-13
- Source
- github
GHSANVDMITREreferencereferencereferencereferencereferencereferencereferencereferencereference