📦 Pytorch Lightning

by Lightningai

🔍 What is Pytorch Lightning?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-8019

CRITICAL CVSS 9.1 Mar 20, 2025

This vulnerability in PyTorch Lightning's LightningApp allows attackers to write arbitrary files via a crafted filename at the /api/v1/upload_file/ endpoint on Windows hosts. This can lead to remote c...

CVE-2024-5980

CRITICAL CVSS 9.8 Jun 27, 2024

A path traversal vulnerability in PyTorch Lightning's /v1/runs API endpoint allows attackers to write arbitrary files anywhere on the local filesystem when extracting malicious tar.gz plugin files. Th...

CVE-2024-5452

CRITICAL CVSS 9.8 Jun 6, 2024

This vulnerability allows remote attackers to execute arbitrary code on self-hosted PyTorch Lightning applications by exploiting improper deserialization in the deepdiff library. Attackers can bypass ...

CVE-2022-0845

CRITICAL CVSS 9.8 Mar 5, 2022

CVE-2022-0845 is a critical code injection vulnerability in PyTorch Lightning that allows attackers to execute arbitrary code by exploiting improper input validation. This affects all users of PyTorch...