Downloads · 30 days
0
manja316/modelscan-bypass-xmlrpc-ssrf
modelscan-bypass-xmlrpc-ssrf is a machine learning model from manja316. Use it for the machine learning task on the model card, and read the license before you ship it in a product. The card lists the license as mit.
Security research only. Do not use for malicious purposes.
Downloads · 30 days
0
Access
Public
Updated Apr 11, 2026
Repo size
173 B
Likes
0
Public
Click a slice to open those files.
Other1.5 KB · 66%
From the Hugging Face model README
Security research only. Do not use for malicious purposes.
Creates XML-RPC ServerProxy to attacker host. xmlrpc.client is not in modelscan's unsafe_globals blocklist. Any attribute access on the loaded object triggers HTTP call to attacker.
pip install modelscan
modelscan scan -p pytorch_model.bin
# Result: No issues found
python3 -c "import pickle; pickle.load(open('pytorch_model.bin', 'rb'))"
# Result: Code executes
Submitted to ProtectAI via Huntr.