CVE-2025-60455
EUVD-2025-19807818.11.2025, 19:15
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| modular | max | 𝑥 < 25.6.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References