monai vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-WG9G-W2J2-8PGRHighmonai: MONAI: Unsafe deserialization in NumpyReader allows arbitrary code execution via malicious .npy filesGHSA-RGHG-Q7WP-9767HighMONAI: MONAI vulnerable to OS command injectionGHSA-QXQ5-QHX6-94QWHighmonai: Incomplete Fix in MONAI: algo_from_pickle() pickle.loads() RCE still present in v1.5.2 despite GHSA-89gg-p5r5-q6r4 claiming patchGHSA-89GG-P5R5-Q6R4Highmonai: MONAI: Unsafe functions lead to pickle deserialization rceCVE-2026-21851Mediummonai: MONAI has Path Traversal (Zip Slip) in NGC Private Bundle DownloadCVE-2025-58757Highmonai: Monai: Unsafe use of Pickle deserialization may lead to RCECVE-2025-58756Highmonai: MONAI: Unsafe torch usage may lead to arbitrary code executionCVE-2025-58755Highmonai: MONAI does not prevent path traversal, potentially leading to arbitrary file writes

Stop the waste.
Protect your environment with Kodem.