Skip to content

TorchServe Management API Exposed

torchserve-management-api-exposed is a high severity check in the ai category, written in yaml. Its source is templates/ai/torchserve/torchserve-management-api-exposed.yaml in cert-x-gen-templates.

Detects an exposed TorchServe management API endpoint. Exposed management interfaces can allow remote model registration or model download. In vulnerable deployments, this can lead to RCE through unsafe model loading or deserialization (e.g., CVE-2022-1471, CVE-2023-43654).

Field Value
Id torchserve-management-api-exposed
Severity high
Language yaml
Category ai
Author CERT-X-GEN Security Team
Template version 1.0.0
Confidence 80
CVSS 9
Weakness CWE-306, CWE-502
Tags torchserve, pytorch, model-serving, management-api, unauth, rce, cve-2022-1471, cve-2023-43654
Target kind not recorded
Oracle not recorded

The file declares cve_ids, http, remediation as well. Those are not tabled above; read the source for what they carry.

Declared in the header. cxg parses @references and then discards it, and nothing at scan time reads it, so this is the only place the links a template cites are surfaced.

To see what the copy on your machine says about itself, and to confirm it is installed at all:

Terminal window
cxg template info torchserve-management-api-exposed

The id it prints is the one to pass anywhere a template is selected. See cxg template for the rest of the subcommand, Scan a target for running a scan, and A match is not a finding for how to read what comes back.