CVE-2026-100840
8.5
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Summary
MONAI through 1.6.0 contains a remote code execution vulnerability in the bundle configuration engine that resolves target values to arbitrary importable callables without an allow list and passes $ expressions to Python eval(). Attackers can publish a malicious bundle with crafted configuration containing arbitrary code that executes when a victim loads the bundle using monai.bundle.load() or monai.bundle.run().
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Project-MONAI | MONAI | 0 <= 1.6.0 | affected |
Weaknesses
- CWE-95: Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')
References
- https://github.com/Project-MONAI/MONAI/security/advisories/GHSA-873f-pvrv-4x83
- https://www.vulncheck.com/advisories/monai-through-1.6.0-remote-code-execution-via-bundle-configuration
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.