Last seen December 7, 2025

CVE-2024-50050 Remote Code Execution Vulnerability affecting Meta

Evidence indicates that Meta is affected by remote code execution.

Technical Severity
Low severity
Lifecycle Status

STABLE

What Happened

Evidence indicates that Meta is affected by remote code execution.

Why This Matters

The evidence matters to defenders using Meta because it could let an attacker run code in affected environments.

Recommended Action

No confirmed vendor remediation is available in the current evidence. Confirm whether Meta is present in your environment and review the affected configuration.

Exposure

Recommended Response
First Seen

Nov 14, 2025 05:30

Last Seen

Dec 07, 2025 05:30

Exploitation status: UNKNOWN

Primary entities:

Meta Microsoft Remote Code Execution CVE-2024-50050 CVE-2025-23254

Authoritative Intelligence

CVE CVE-2024-50050, CVE-2025-23254 Incident identifier
NVD CVSS 6.3 MEDIUM NVD
FIRST EPSS 0.009 55.9 pct
CWE CWE-502 Weakness classification

Provider evidence: NVD, FIRST EPSS

EPSS is a vulnerability exploitation probability signal, not proof that your environment is exposed. CISA KEV means known exploitation of the vulnerability, not that your system was exploited.

Timeline

  • Incident first seen
    Nov 14, 2025 05:30

    BugSkan first recorded this incident.

  • Copy-paste vulnerability hits AI inference frameworks at Meta, Nvidia, and Microsoft - csoonline.com
    Nov 14, 2025 05:30

    csoonline.com ยท Vulnerability

  • Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference Frameworks - The Hacker News
    Nov 14, 2025 05:30

    thehackernews.com ยท Vulnerability

  • ShadowMQ Vulnerabilities: Over 30 Critical Flaws in Meta Llama, NVIDIA TensorRT-LLM, vLLM, and Other AI Inference Engines Enable Data Theft and Remote Code Execution - Rescana
    Dec 07, 2025 05:30

    rescana.com ยท Vulnerability

  • Latest observed development
    Dec 07, 2025 05:30

    Most recent source or update associated with this incident.

Sources

Copy-paste vulnerability hits AI inference frameworks at Meta, Nvidia, and Microsoft - csoonline.com

csoonline.com ยท Nov 14, 2025 05:30

A series of critical Remote Code Execution (RCE) vulnerabilities, dubbed 'ShadowMQ,' were discovered in major AI inference frameworks (Meta Llama Stack, Nvidia TensorRT-LLM, vLLM, etc.) due to insecure Python pickle deserialization over unauthenticated ZeroMQ sockets. These flaws, including CVE-2024-50050 and CVE-2025-23254, were widely replicated through code reuse, creating systemic risk for arbitrary code execution on enterprise AI infrastructure and potential data exfiltration.

Open publisher source
Researchers Find Serious AI Bugs Exposing Meta, Nvidia, and Microsoft Inference Frameworks - The Hacker News

thehackernews.com ยท Nov 14, 2025 05:30

Critical remote code execution vulnerabilities have been discovered across major AI inference engines, including Meta, Nvidia, and Microsoft, stemming from the unsafe use of ZeroMQ and Python's pickle deserialization. This "ShadowMQ" pattern allows attackers to execute arbitrary code, escalate privileges, and conduct model theft by exploiting unauthenticated ZMQ TCP sockets.

Open publisher source
ShadowMQ Vulnerabilities: Over 30 Critical Flaws in Meta Llama, NVIDIA TensorRT-LLM, vLLM, and Other AI Inference Engines Enable Data Theft and Remote Code Execution - Rescana

rescana.com ยท Dec 07, 2025 05:30

Over 30 critical "ShadowMQ" vulnerabilities, stemming from insecure ZeroMQ `recv_pyobj()` and Python `pickle` deserialization, affect leading AI inference engines such as Meta Llama LLM and NVIDIA TensorRT-LLM. These flaws enable remote code execution, data theft, and privilege escalation, with specific CVEs like CVE-2024-50050 attributed, and active exploitation has been observed.

Open publisher source

Watchlist Match

Want personalized relevance?

Create an account to see which incidents overlap with the technologies you monitor.

โ† Back to incident intelligence