modular
The Modular Platform (includes MAX & Mojo)
Activity
- Latest release
- 1mo ago
- Total releases
- 11
- Cadence
- ~2 months
- Last 12 months
- 7
Reach
- Stars
- 26.8k
Details
- License
- unknown
- First release
- May 06, 2025
| Version | Released | |
|---|---|---|
26.5.0
minor
| ||
26.4.0
minor
| ||
26.3.0
minor
| ||
26.2.0
minor
| ||
26.1.0
major
| ||
25.7.0
minor
| ||
25.6.1
patch
| ||
25.6.0
minor
| ||
25.5.0
minor
1 CVE
CVE-2025-60455
PYSEC-2026-427
GHSA-7xcv-9j6c-2fmc
PYSEC-2025-253
Jun 29, 2026
Modular Max Serve has Unsafe Deserialization vulnerability
Critical
Network
Low
None
None
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code. Affected versions
25.3.0
25.4.0
25.5.0
Fixed in
25.6.0
References
Updated Jul 13, 2026 · Source: OSV.dev | ||
25.4.0
minor
1 CVE
CVE-2025-60455
PYSEC-2026-427
GHSA-7xcv-9j6c-2fmc
PYSEC-2025-253
Jun 29, 2026
Modular Max Serve has Unsafe Deserialization vulnerability
Critical
Network
Low
None
None
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code. Affected versions
25.3.0
25.4.0
25.5.0
Fixed in
25.6.0
References
Updated Jul 13, 2026 · Source: OSV.dev | ||
25.3.0
initial
1 CVE
CVE-2025-60455
PYSEC-2026-427
GHSA-7xcv-9j6c-2fmc
PYSEC-2025-253
Jun 29, 2026
Modular Max Serve has Unsafe Deserialization vulnerability
Critical
Network
Low
None
None
Unsafe Deserialization vulnerability in Modular Max Serve before 25.6, specifically when the "--experimental-enable-kvcache-agent" feature is used allowing attackers to execute arbitrary code. Affected versions
25.3.0
25.4.0
25.5.0
Fixed in
25.6.0
References
Updated Jul 13, 2026 · Source: OSV.dev |