Looking for the vulnerability index of Invicti's legacy products?
TorchServe Management API SSRF (CVE-2023-43654) - Vulnerability Database

TorchServe Management API SSRF (CVE-2023-43654)

Description

TorchServe is a flexible and easy-to-use tool for serving and scaling PyTorch models in production.

In the default configuration, TorchServe is vulnerable to an SSRF vulnerability. An attacker could exploit this vulnerability to compromise the server.

Remediation

Set secure values for the allowed_urls option and the model URL in the TorchServe

Related Vulnerabilities