CVE-2026-45804

HIGH CVSS 3.1: 7.5 EPSS 0.27%
Updated Jul 15, 2026
Diffusers
Parameter Value
CVSS 7.5 (HIGH)
Fixed In 0.38.0
Type CWE-367 (Time-of-check Time-of-use (TOCTOU))
Vendor Diffusers
Public PoC No

Diffusers is the a library for pretrained diffusion models. Prior to 0.38.0, Diffusers' DiffusionPipeline.from_pretrained flow can bypass the trust_remote_code guard because download() validates model_index.json and custom pipeline code before later loading from a cached folder that can change, allowing a Hub repository with custom .py pipeline code to execute through the custom pipeline flow without passing custom_pipeline or trust_remote_code=True. This issue is fixed in version 0.38.0.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
High
Difficult to exploit
Privileges Required
None
No privileges needed
User Interaction
Required
User action required

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
High
Complete data modification
Availability
High
Complete denial of service

CVSS Vector v3.1

Related Vulnerabilities