Share
## https://sploitus.com/exploit?id=F08F10CC-7B0B-523D-8BBB-4C0894C71084
# CVE-2025-27520
exploit for CVE-2025-27520 A Remote Code Execution (RCE) vulnerability caused by insecure deserialization  in the latest version (v1.4.2) of BentoML. It allows any unauthenticated user to execute arbitrary code on the server. It exists an unsafe code segment in serde.py. This vulnerability is fixed in 1.4.3.