sentence-transformers Package Vulnerability: Critical Security Bypass
An early warning has been issued regarding a critical security vulnerability in the sentence-transformers package, which could allow attackers to achieve arbitrary code execution.
What happened
The sentence-transformers package is reportedly affected by a security control bypass vulnerability, tracked as CVE-2026-68770, with a CVSS score of 9.8. This vulnerability appears to be due to a logic flaw in the import_module_class helper within sentence_transformers/util/misc.py. The flaw allows attackers to bypass security controls by placing malicious Python files in a model directory, leading to arbitrary code execution when the model is loaded.
The vulnerability is under investigation, and it is recommended to upgrade to the latest version of sentence-transformers that patches this vulnerability. Additionally, it is advised to avoid loading models from untrusted sources to mitigate potential risks.
For more detailed information, primary sources should be consulted as the investigation is ongoing. The specific version ranges and exact details of the compromise are not yet confirmed.
How 0Day mitigates this
sentence-transformers is anywhere in your dependency tree, the engineers who own the affected repositories get a push alert the moment it is flagged — no manual audit to remember to run.Read how this differs from waiting on a scanner to catch a known advisory, or see the exact, read-only access 0Day needs to do this for an organization.