CVE-2026-65010
Datasets Symlink-following Arbitrary File Write via Extractor.extract()
CVSS Score
6.6
EPSS Score
0.0%
EPSS Percentile
0th
Datasets through 5.00, fixed in commit ad2d853, contains a symlink-following vulnerability in Extractor.extract() that allows local attackers to write arbitrary files by pre-planting symlinks at predictable output paths. Attackers can redirect archive extraction to arbitrary filesystem locations in shared-cache environments, enabling overwrite of sensitive files and potential privilege escalation or code execution.
| CWE | CWE-61 |
| Vendor | huggingface |
| Product | datasets |
| Published | Jul 23, 2026 |
Stay Ahead of the Next One
Get instant alerts for huggingface datasets
Be the first to know when new medium vulnerabilities affecting huggingface datasets are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
High
Affected Versions
huggingface / datasets
0 โค 5.00
References
github.com: https://github.com/huggingface/datasets/issues/8296 github.com: https://github.com/huggingface/datasets/pull/8303 github.com: https://github.com/huggingface/datasets/commit/ad2d853ae2ce41d8068c23b44c2e29004312ccee vulncheck.com: https://www.vulncheck.com/advisories/datasets-symlink-following-arbitrary-file-write-via-extractor-extract
Credits
YU SUN