A patched Unsloth Studio flaw allowed malicious Hugging Face models to execute Python code when selected in the browser.
Just selecting a model in Unsloth Studio could automatically execute Python code from its repository, potentially exposing ...