Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 PyPI

CVE-2025-66960

PYSEC-2026-102 · CVE-2025-66960

Published · Modified

Description

An issue in ollama v.0.12.10 allows a remote attacker to cause a denial of service via the fs/ggml/gguf.go, function readGGUFV1String reads a string length from untrusted GGUF metadata

Ready to move

Start Securing

Free, no credit card | First findings in minutes