PT-2026-34336 · Unknown · Instructlab
Osidb Bzimport
·
Published
2026-04-22
·
Updated
2026-04-22
·
CVE-2026-6859
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
InstructLab (affected versions not specified)
Description
A flaw exists in the
linux train.py script which hardcodes the trust remote code variable as True when loading models from HuggingFace. This allows a remote attacker to achieve arbitrary Python code execution if a user is convinced to run the ilab train/download/generate command using a specially crafted malicious model from the HuggingFace Hub, potentially leading to complete system compromise.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Instructlab