THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-qxq5-qhx6-94qw (high) — Incomplete Fix in MONAI: algo_from_pickle() pickle.loads() RCE still present in v1.5.2 despite GHSA-89gg-p5r5-q6r4 claiming patch

[GHSA] GHSA-qxq5-qhx6-94qw (high) — Incomplete Fix in MONAI: algo_from_pickle() pickle.loads() RCE still present in v1.5.2 despite GHSA-89gg-p5r5-q6r4 claiming patch

medgithub_advisoriesPublished 2026-08-18

GHSA-qxq5-qhx6-94qw Severity: high CVE: None

Incomplete Fix in MONAI: algo_from_pickle() pickle.loads() RCE still present in v1.5.2 despite GHSA-89gg-p5r5-q6r4 claiming patch

## Summary

GHSA-89gg-p5r5-q6r4 claims the pickle deserialization vulnerability in `algo_from_pickle()` was fixed in v1.5.2. However, `monai/auto3dseg/utils.py` has not been modified since 2024-07-12 — 18 months

Original source: https://github.com/advisories/GHSA-qxq5-qhx6-94qw