CVE-2021-35958 | Google TensorFlow up to 2.5.0 Archive tf.keras.utils.get_file path traversal
A vulnerability was found in Google TensorFlow up to 2.5.0. It has been classified as problematic. This affects the function tf.keras.utils.get_file of the component Archive Handler. The manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2021-35958. The attack needs to be initiated within the local network. There is no exploit available.
The real existence of this vulnerability is still doubted at the moment.