CVE-2025-23304 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
January 13, 2026
Last Seen
January 13, 2026

CVE-2025-23304 is a vulnerability tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed January 13, 2026; most recent activity January 13, 2026.

Related Threat Clusters

  • Python Libraries in AI/ML Models Vulnerable to Metadata Poisoning

    Vulnerabilities have been identified in popular AI and ML Python libraries used in Hugging Face models, allowing remote attackers to embed malicious code in metadata. This code executes automatically when a file with…

    3 articles · Updated January 13, 2026

Recent Intelligence Reports

  • Python libraries in AI/ML models can be poisoned w metadata — Theregister · January 13, 2026
  • Popular Python libraries used in Hugging Face models subject to poisoned metadata attack — Theregister · January 13, 2026

CVSS v3.1 Breakdown