Description
A vulnerability was detected in dmlc dgl up to 2.1.0. This impacts the function load_info/_read_torch_data of the file utils.py. Performing a manipulation of the argument path results in deserialization. The attack can be initiated remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Published: 2026-09-20
Score: 5.1 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Assess Impact
AI Analysis

Impact

The vulnerability exists in the dmlc DGL library, versions up to and including 2.1.0. The function load_info/_read_torch_data in utils.py incorrectly accepts a path argument that is later deserialized without proper validation. This deserialization flaw allows an attacker to supply crafted data via the path parameter, leading to arbitrary code execution. The flaw is triggered remotely, meaning an unauthenticated attacker can send a request that forces the library to deserialize malicious input.

Affected Systems

Affected systems are installations of dmlc DGL where the library is loaded and the _read_torch_data function is invoked. All versions up to 2.1.0 are vulnerable; newer releases may have remedied the issue, but the CVE does not list supported versions beyond that. The vulnerability applies to any platform where DGL runs, including Python environments on servers, workstations, or containers.

Risk and Exploitability

The CVSS score of 5.1 indicates moderate severity, but the existence of a public exploit and the remote nature of the attack suggest a higher real‑world risk. EPSS is not available, and the vulnerability is not currently listed in CISA KEV, but the lack of an official patch combined with the public exploit makes it prudent to treat it as a high‑priority risk. Administrators should assess whether their deployments use vulnerable versions and adopt the remediation steps outlined below.

Generated by OpenCVE AI on September 20, 2026 at 23:15 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to a dmlc DGL version that contains the fix (currently none is listed beyond 2.1.0; check the repository for a patched release).
  • If an upgrade is not yet possible, limit the path argument to trusted directories and validate the input before it is passed to _read_torch_data to prevent malicious deserialization.
  • Monitor the dmlc DGL project and security advisories for a future patch or vulnerability notice.
  • Consider disabling or removing functionality that calls _read_torch_data if it is not required in your deployment.

Generated by OpenCVE AI on September 20, 2026 at 23:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 24 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sun, 20 Sep 2026 22:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in dmlc dgl up to 2.1.0. This impacts the function load_info/_read_torch_data of the file utils.py. Performing a manipulation of the argument path results in deserialization. The attack can be initiated remotely. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Title dmlc dgl utils.py _read_torch_data deserialization
First Time appeared Dmlc
Dmlc dgl
Weaknesses CWE-20
CWE-502
CPEs cpe:2.3:a:dmlc:dgl:*:*:*:*:*:*:*:*
Vendors & Products Dmlc
Dmlc dgl
References
Metrics cvssV2_0

{'score': 6.5, 'vector': 'AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 5.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-24T12:40:30.524Z

Reserved: 2026-09-20T08:38:59.731Z

Link: CVE-2026-94092

cve-icon Vulnrichment

Updated: 2026-09-24T12:40:20.996Z

cve-icon NVD

Status : Deferred

Published: 2026-09-20T23:17:03.160

Modified: 2026-09-24T13:17:17.293

Link: CVE-2026-94092

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T01:30:08Z

Weaknesses
  • CWE-20

    Improper Input Validation

  • CWE-502

    Deserialization of Untrusted Data