CVE-2026-25874: exploitation status and patch state

CVE-2026-25874 · CVSS 9.8 CRITICAL · EPSS 16%

LeRobot through 0.5.1 contains an unsafe deserialization vulnerability in the async inference pipeline where pickle.loads() is used to deserialize data received over unauthenticated gRPC channels without TLS in the policy server and robot client components. An unauthenticated network-reachable attacker can achieve arbitrary code execution on the server or client by sending a crafted pickle payload through the SendPolicyInstructions, SendObservations, or GetActions gRPC calls.

Is CVE-2026-25874 exploited?

Which products and versions are affected?

No affected package list recorded here yet.

Is there a patch?

No patch identifier recorded here yet.

What PlainSec published about CVE-2026-25874

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-11.