pkg:PyPI/sagemaker

7 total CVEsHIGH5MEDIUM2

✅ Check your installed version

All known vulnerabilities

  • HIGH7.8CVE-2024-34073sagemaker-python-sdk Command Injection vulnerability
    from 0, < 2.214.3
  • HIGH7.8CVE-2024-34072sagemaker-python-sdk vulnerable to Deserialization of Untrusted Data
    from 0, < 2.218.0
  • HIGH7.2CVE-2026-8597Amazon SageMaker Python SDK is missing integrity verification in its Triton inference handler
    >= 2.199.0, < 2.257.2
  • HIGH7.2CVE-2026-8596Cleartext storage of HMAC signing key in Amazon SageMaker Python SDK ModelBuilder/Serve path
    >= 2.199.0, < 2.257.2
  • HIGH7.2CVE-2026-1777SageMaker Python SDK has Exposed HMAC
    >= 3.0, < 3.2.0
  • MEDIUM5.9CVE-2026-1778SageMaker Python SDK has Insecure TLS Configuration
    >= 3.0, < 3.1.1
  • MEDIUM5.9CVE-2025-0508SageMaker Workflow component allows possibility of MD5 hash collisions
    from 0, < 2.237.3