📦 Bentoml

by Bentoml

🔍 What is Bentoml?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-54381

CRITICAL CVSS 9.9 Jul 29, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in BentoML's file upload system. Unauthenticated attackers can force the server to make arbitrary HTTP requests to internal networ...

CVE-2025-32375

CRITICAL CVSS 9.8 Apr 9, 2025

CVE-2025-32375 is an insecure deserialization vulnerability in BentoML's runner server that allows remote code execution. Attackers can execute arbitrary code by sending specially crafted POST request...

CVE-2025-27520

CRITICAL CVSS 9.8 Apr 4, 2025

CVE-2025-27520 is a critical remote code execution vulnerability in BentoML caused by insecure deserialization in serde.py. It allows unauthenticated attackers to execute arbitrary code on servers run...