CVE-2024-0936
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Jan 26, 2024
Updated: May 17, 2024
CWE ID 502
Summary
CVE-2024-0936 represents a critical vulnerability in the van_der_Schaar LAB TemporAI 0.0.3, specifically affecting the PKL File Handler's load_from_file function. This issue enables remote attackers to exploit deserialization manipulation. The vulnerability has been publicly disclosed, and no patch is currently available. The identifier VDB-252181 was assigned to this issue. The vendor acknowledged the problem and is planning to release a patch in February 2024.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.