WorkThe story, in brief

Critical Hugging Face Transformers flaw ran attacker code on a routine model load

A critical zero-day in Hugging Face Transformers just bypassed the industry's standard safety guardrail. Here's what it means for your AI supply chain.

Illustration of a transparent lens revealing connected networks across layers of paper.
Exploring the next frontier of AI research.AI illustration by KeyNews
The KeyNews take

Why it matters

A remote code execution vulnerability in Hugging Face's widely-used Transformers library defeated its own recommended security controls, exposing organizations to arbitrary code execution through model loading—a routine operation in AI development workflows. This represents a critical supply-chain risk for any team downloading models from open repositories.

The key facts

7 to know
  1. CVE-2026-4372

  2. Vulnerability: remote code execution via model loading

  3. Defeated trust_remote_code=False safeguard

  4. Disclosed by Pluto Security Inc.

  5. Affects standard model-loading commands

  6. Impacts organizations following recommended Hugging Face security guidance

  7. Supply-chain security risk for open-source AI workflows

Go to the source

SiliconAnglesiliconangle.com

Publisher excerpt: Pluto Security Inc. today disclosed a critical remote code execution vulnerability in Hugging Face Inc.’s Transformers library that allowed attacker-controlled artificial intelligence models to run arbitrary code on a victim’s machine. The flaw fired through a standard model-loading command, even…
Read original report
Back to today's editionMore work news

Keep reading

Related stories

More from Work