max
The Modular Accelerated Xecution (MAX) framework
Activity
- Latest release
- 1mo ago
- Total releases
- 11
- Cadence
- ~2 months
- Last 12 months
- 7
Details
- License
- unknown
- First release
- May 06, 2025
| Version | Released | |
|---|---|---|
26.5.0
minor
| ||
26.4.0
minor
| ||
26.3.0
minor
| ||
26.2.0
minor
| ||
26.1.0
major
| ||
25.7.0
minor
| ||
25.6.1
patch
| ||
25.6.0
minor
| ||
25.5.0
minor
1 CVE
CVE-2025-60455
PYSEC-2025-253
GHSA-7xcv-9j6c-2fmc
PYSEC-2026-427
Nov 18, 2025
8.4
/ 10
High
Local
Low
None
None
Unchanged
High
High
High
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code. Affected versions
25.3.0
25.4.0
25.5.0
Fixed in
25.6.0
References
Updated Jul 13, 2026 · Source: OSV.dev | ||
25.4.0
minor
1 CVE
CVE-2025-60455
PYSEC-2025-253
GHSA-7xcv-9j6c-2fmc
PYSEC-2026-427
Nov 18, 2025
8.4
/ 10
High
Local
Low
None
None
Unchanged
High
High
High
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code. Affected versions
25.3.0
25.4.0
25.5.0
Fixed in
25.6.0
References
Updated Jul 13, 2026 · Source: OSV.dev | ||
25.3.0
initial
1 CVE
CVE-2025-60455
PYSEC-2025-253
GHSA-7xcv-9j6c-2fmc
PYSEC-2026-427
Nov 18, 2025
8.4
/ 10
High
Local
Low
None
None
Unchanged
High
High
High
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code. Affected versions
25.3.0
25.4.0
25.5.0
Fixed in
25.6.0
References
Updated Jul 13, 2026 · Source: OSV.dev |