takenaka hiroya@Joe_Biden_jaDisclosure
A new CVE-2026-12481, a Keras Lambda deserialization RCE, has been added to the vulnerability watch list, urging stakeholders to review information and consider mitigation.
SecAlerts@SecAlertsCoDisclosure
Disclosed a critical remote code execution vulnerability (CVSS 9.8) in Keras 3.14.0 allowing arbitrary code execution via untrusted model deserialization with Lambda layers.
Infoflowcloud@infoflowcloudDisclosure
The post announces a newly disclosed CVE (CVE-2026-12481) that permits arbitrary code execution in Keras 3.14.0 via deserialization issues in the Lambda layer, including a CVE reference link and a brief translation.
CVE@CVEnewDisclosure
The text announces CVE-2026-12481, a newly disclosed arbitrary code execution vulnerability in Keras 3.14.0 caused by deserialization handling in the Lambda layer, without mentioning exploits, patches, or active use.