Hugging Face LeRobot Flaw Opens Door to Remote Code Execution Attacks
ID: 77363a1f-7409-50fd-9318-d0a3a89ea255
STIX ID: report--77363a1f-7409-50fd-9318-d0a3a89ea255
Feed Name: GBHackers
A critical RCE (CVE-2026-25874, CVSS 9.8) in Hugging Face’s LeRobot arises from using pickle.loads() to deserialize network data in gRPC handlers and initializing gRPC with add_insecure_port(), allowing unauthenticated attackers with network access to execute arbitrary system commands; the report details affected RPC endpoints, exploitation mechanics, developer comments suppressing linter warnings, exposure scenarios when bound to 0.0.0.0, and remediation steps including removing pickle, enabling TLS, and enforcing authentication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
