CVE-2026-100308 - GluonTS arbitrary command execution during model deserialization
Cybersecurity Classified by Officially
CVE-2026-100308 - GluonTS arbitrary command execution during model deserialization
Bulletin ID: 2026-119-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 09/29/2026 08:00 AM PDT
GluonTS is an open source library for deep learning based time series models. We identified CVE-2026-100308 that allows arbitrary command execution upon deserialization of untrusted model artifacts.
Deserialization of untrusted data in the model loading component in Amazon GluonTS before 0.17.0 might allow context-dependent attackers to execute arbitrary operating system commands with the privileges of the loading process via a crafted serialized model directory. The issue arises whenever a user calls Predictor.deserialize() or any RepresentablePredictor.deserialize() on a model directory they do not fully control.
This issue has been addressed in GluonTS version 0.17.0. We recommend upgrading to the latest version and ensuring any forked or derivative code is patched to incorporate the new fixes.
We recommend users to only deserialize trusted model artifacts using the library.
We would like to thank Michael Holmquist (Hasp Labs) for collaborating on this issue through the coordinated vulnerability disclosure process.
This is an extract. The publication continues at the source.
Read the original at the source: https://aws.amazon.com/security/security-bulletins/rss/2026-119-aws/
Officially imported this from Amazon Web Services’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.
Provenance
- Organization
- Amazon Web Services — imported from official source
- Official source
- https://aws.amazon.com/security/security-bulletins/feed/ RSS
- Imported
- September 29, 2026 16:00
- Versions
- 1 recorded
- Identity
f094c55b66f0cb726ab4b0c1cc2a29cd7dccc421