CyberRota Analysis
AI-GeneratedMONAI versions prior to 1.6.0 are vulnerable due to an unsafe deserialization flaw in the NumpyReader class, which allows the use of numpy.load with allow_pickle=True. This vulnerability enables attackers to create malicious .npy files that can execute arbitrary code when processed through MONAI's data pipeline. Organizations utilizing MONAI for data handling should prioritize patching to mitigate the risk of code execution attacks.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
MONAI before 1.6.0 contains an unsafe deserialization vulnerability in the NumpyReader class that unconditionally uses numpy.load with allow_pickle=True when loading .npy and .npz files. Attackers can craft malicious .npy files with pickle payloads that execute arbitrary code when loaded through MONAI's standard data pipeline.
Related CVEs
Other vulnerabilities affecting the same vendor(s)