Back to overview

CVE-2025-12487

CRITICAL
9.8
CVSS 3.0
Description
oobabooga text-generation-webui trust_remote_code Reliance on Untrusted Inputs Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of oobabooga text-generation-webui. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the trust_remote_code parameter provided to the join endpoint. The issue results from the lack of proper validation of a user-supplied argument before using it to load a model. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-26681.

Metadata

CVE ID
CVE-2025-12487
State
PUBLISHED
Assigner
zdi
Reserved
2025-10-29 19:49 UTC
Published
2025-11-06 20:12 UTC
Last updated
2025-11-06 20:29 UTC
Primary CWE
CWE-807
CWE-807: Reliance on Untrusted Inputs in a Security Decision
Vendor / Product
oobabooga / text-generation-webui
Sources
cve.org  ·  NVD

Severity & Metrics

9.8 CRITICAL CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
SSVC — CISA Coordinator
Exploitation
none
Automatable
yes
Tech. Impact
total
Affected products (1)
VendorProductPlatformVersions
oobabooga text-generation-webui 2.5
Weakness (CWE)
CWESourceDescription
CWE-807 cna CWE-807: Reliance on Untrusted Inputs in a Security Decision
CVSS scores (1)
ScoreSeverityVersionSourceVector
9.8 CRITICAL 3.0 cna CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Back to overview