logo

Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCE

ID: 8d448170-f6f4-5259-9ecd-a34b37f4dfae

STIX ID: report--8d448170-f6f4-5259-9ecd-a34b37f4dfae

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2026-04-28

Date Updated: 2026-04-28

Author: [email protected] (The Hacker News)

...
...

Researchers disclosed CVE-2026-25874, a critical (CVSS 9.3) vulnerability in Hugging Face's LeRobot that enables unauthenticated remote code execution by deserializing attacker-controlled pickle payloads over unauthenticated gRPC channels. Validated against LeRobot 0.4.3, the flaw affects the PolicyServer and robot client, remains unpatched (fix planned for 0.6.0), and could lead to full host compromise, theft of credentials and models, lateral movement, and physical safety risks to connected robots.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.