CVE-2026-1669 Affecting tensorflow-cpu-jupyter package, versions <2.20.0-r11


Severity

Recommended
0.0
high
0
10

Snyk's Security Team recommends NVD's CVSS assessment. Learn more

Threat Intelligence

Social Trends
EPSS
0.3% (22nd percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-CHAINGUARDLATEST-TENSORFLOWCPUJUPYTER-15323631
  • published20 Feb 2026
  • disclosed11 Feb 2026

Introduced: 11 Feb 2026

CVE-2026-1669  (opens in a new tab)

How to fix?

Upgrade Chainguard tensorflow-cpu-jupyter to version 2.20.0-r11 or higher.

NVD Description

Note: Versions mentioned in the description apply only to the upstream tensorflow-cpu-jupyter package and not the tensorflow-cpu-jupyter package as distributed by Chainguard. See How to fix? for Chainguard relevant fixed versions and status.

Arbitrary file read in the model loading mechanism (HDF5 integration) in Keras versions 3.0.0 through 3.13.1 on all supported platforms allows a remote attacker to read local files and disclose sensitive information via a crafted .keras model file utilizing HDF5 external dataset references.

CVSS Base Scores

version 3.1