


Perceptive Security
SOC/SIEM Consultancy

SpeechBrain before 1.1.1 contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary code by supplying a crafted CKPT.yaml che…
Published:
27 August 2026 at 00:00:00
Alert date:
27 August 2026 at 23:07:34
Source:
nvd.nist.gov
Emerging Technologies, Supply Chain & Dependencies
SpeechBrain versions prior to 1.1.1 contain a critical arbitrary code execution vulnerability tracked as CVE-2026-10036. The flaw exists in the Checkpointer.recover_if_possible() method, which uses PyYAML's unsafe loader to parse CKPT.yaml checkpoint metadata files. Attackers can craft malicious CKPT.yaml files embedding Python object construction tags such as !!python/object/apply to trigger code execution during candidate enumeration. Crucially, code execution occurs during candidate discovery even if the malicious checkpoint is never selected for recovery, lowering the exploitation bar significantly. The vulnerability affects any deployment where an attacker can place a crafted CKPT.yaml file within the configured checkpoint directory. A fix was introduced in SpeechBrain version 1.1.1, which addresses the unsafe YAML loading behavior. Users are strongly advised to upgrade to v1.1.1 or later immediately.
Technical details
Mitigation steps:
Affected products:
SpeechBrain
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10036
https://github.com/speechbrain/speechbrain/commit/22a616646a493871401461f80b2d5cf564cb2850
https://github.com/speechbrain/speechbrain/pull/3067
https://github.com/speechbrain/speechbrain/releases/tag/v1.1.1
https://www.vulncheck.com/advisories/speechbrain-arbitrary-code-execution-via-ckpt-yaml-parsing
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
