pytorch-lightning@0.7.3 vulnerabilities
PyTorch Lightning is the lightweight PyTorch wrapper for ML researchers. Scale your models. Write less boilerplate.
-
latest version
2.4.0
-
latest non vulnerable version
-
first published
6 years ago
-
latest version published
4 months ago
-
licenses detected
- [0.4.0,)
Direct Vulnerabilities
Known vulnerabilities in the pytorch-lightning package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
pytorch-lightning is a lightweight PyTorch wrapper for ML researchers. Scale your models. Write less boilerplate. Affected versions of this package are vulnerable to Unrestricted Upload of File with Dangerous Type through the How to fix Unrestricted Upload of File with Dangerous Type? Upgrade |
[0,2.4.0)
|
pytorch-lightning is a lightweight PyTorch wrapper for ML researchers. Scale your models. Write less boilerplate. Affected versions of this package are vulnerable to Improper Restriction of Operations within the Bounds of a Memory Buffer due to improper handling of deserialized user input and mismanagement of dunder attributes by the How to fix Improper Restriction of Operations within the Bounds of a Memory Buffer? Upgrade |
[0,2.3.3)
|
pytorch-lightning is a lightweight PyTorch wrapper for ML researchers. Scale your models. Write less boilerplate. Affected versions of this package are vulnerable to Command Injection by setting the How to fix Command Injection? Upgrade |
[,1.6.0rc0)
|
pytorch-lightning is a lightweight PyTorch wrapper for ML researchers. Scale your models. Write less boilerplate. Affected versions of this package are vulnerable to Deserialization of Untrusted Data via How to fix Deserialization of Untrusted Data? Upgrade |
[,1.6.0rc0)
|
pytorch-lightning is a lightweight PyTorch wrapper for ML researchers. Scale your models. Write less boilerplate. Affected versions of this package are vulnerable to Arbitrary Shell Injection due to an insecure usage of How to fix Arbitrary Shell Injection? Upgrade |
[,0.9.0)
|