Remote Code Execution Vulnerability in LLaMA-Factory by Hiyouga
CVE-2025-53002
What is CVE-2025-53002?
A remote code execution vulnerability was identified in LLaMA-Factory, which is a tuning library for large language models. The flaw occurs during the training process when the application loads the vhead_file without implementing appropriate safeguards. This oversight allows attackers to exploit the vulnerability by passing a malicious Checkpoint path parameter through the WebUI, enabling arbitrary code execution on the host system without user awareness. The issue arises from the lack of the secure parameter weights_only=True during file loading. Users are advised to upgrade to version 0.9.4, which addresses and resolves this security issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
LLaMA-Factory < 0.9.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
