YAML Metadata Warning:empty or missing yaml metadata in repo card
Check out the documentation for more information.
PyTorch Package module import RCE
This PoC demonstrates Python code execution during torch.package.PackageImporter.load_pickle() from a malicious PyTorch Package .pt file.
The package embeds a Python module with import-time side effects. Loading the packaged pickle imports that embedded module from the .pt archive and creates a marker file.
Run:
python build_and_verify.py
Expected result:
package_load_ok=truemarker_created=truemodelscan_summary.total_issues=0
Inference Providers NEW
This model isn't deployed by any Inference Provider. 🙋 Ask for provider support