Bounties
Partners
Community
Info
facebookresearch / faiss
Project repository
A library for efficient similarity search and clustering of dense vectors.
Submit a report
FIRST INTERACTION
WITHIN
N/A DAYS
REVIEW
WITHIN
18 DAYS
FIX
WITHIN
N/A DAYS
Integer Overflow in ilpn Deserialization — Missing mul_no_overflow() causes DoS...
Mar 22nd 2026
mscgo
•
self closed
Arbitrary File Read via OnDiskInvertedLists — malicious .index opens any file vi...
Mar 22nd 2026
mscgo
•
self closed
Path traversal via OnDiskInvertedLists filename in read_index allows arbitrary f...
Mar 18th 2026
eistee82
•
self closed
Path traversal via OnDiskInvertedLists filename in read_index allows arbitrary f...
Mar 18th 2026
eistee82
•
self closed
Unsafe pickle.load() in faiss big_batch_search() Checkpoint Enables RCE via Mali...
Mar 18th 2026
odysseypro25-project
•
self closed
Arbitrary code execution via eval() injection in FAISS offline IVF configuration...
Mar 16th 2026
elucidator-hky
•
self closed
Arbitrary code execution via unsafe pickle.load and torch.load(weights_only=Fals...
Mar 16th 2026
elucidator-hky
•
self closed
Arbitrary File Read/Truncation via OnDiskInvertedLists Path Traversal
Mar 8th 2026
alrightryanx
•
self closed
Integer Overflow in ArrayInvertedListsPanorama Deserialization Leading to Heap O...
Mar 3rd 2026
p0her
•
duplicate
Medium
Heap Buffer Overflow via Crafted NNDescent Index
Feb 20th 2026
alrightryanx
•
duplicate
High
Out-of-bounds Heap Read in ScalarQuantizer Codecs via Crafted FAISS Index File
Feb 19th 2026
morecitricacid-coder
•
self closed
Out-of-bounds Heap Read in ScalarQuantizer Codecs via Crafted FAISS Index File
Feb 19th 2026
morecitricacid-coder
•
self closed
Integer overflow in NSG graph deserialization leads to heap buffer overflow writ...
Feb 7th 2026
iiviel
•
duplicate
Critical
Arbitrary Code Execution via ```pickle.load()``` on Attacker-Supplied Checkpoin...
Feb 1st 2026
abdallaabdalrhman
•
duplicate
High
RPC Server Sends Unrestricted Pickle — Attacker-Controlled Server Achieves RCE o...
Feb 1st 2026
abdallaabdalrhman
•
duplicate
Critical
FAISS IndexBinaryHash BitstringReader Out-of-bounds Read Vulnerability
Feb 1st 2026
mia-718ai
•
duplicate
High
Heap Out-of-Bounds Write via Crafted NSG Index — Arbitrary Code Execution Path
Feb 7th 2026
abdallaabdalrhman
•
duplicate
Critical
FAISS Benchmark Framework Unsafe Pickle Deserialization leads to Remote Code Exe...
Feb 1st 2026
mia-718ai
•
duplicate
High
Unvalidated `n_levels` allows division-by-zero crash in Panorama-based indexes
Mar 3rd 2026
f00dat
•
duplicate
High
Heap Buffer Overflow in FAISS IVF via imbalance_factor()
Apr 2nd 2026
hyperps
•
pending
FAISS Python API: Externally-Controlled Format String leads to DOS
Mar 29th 2026
prodigysec
•
pending
Faiss NSG Deserialization OOB Write
Feb 7th 2026
somet2mes
•
duplicate
High
Parallel exception masking in OpenMP loops hides failures (CWE-703)
Dec 16th 2025
happyjesterr
•
self closed
Null pointer dereference in GenericDistanceComputer::operator() causes process c...
Dec 16th 2025
happyjesterr
•
self closed
Unmanaged raw pointer allocations may leak memory on exception paths in Faiss (r...
Dec 16th 2025
happyjesterr
•
self closed
Denial of Service via unbounded pickle deserialization in FAISS RPC ( contrib/rp...
Feb 1st 2026
0init
•
duplicate
Medium
Client-side RCE via Unsafe Pickle Deserialization in FAISS contrib/rpc.py (Res...
Sep 18th 2025
0init
•
duplicate
High
Integer Overflow in FAISS IndexBinary::search_and_reconstruct Leading to Memory...
Oct 23rd 2025
elexs1zz
•
duplicate
High
Integer Overflow in Binary Search Midpoint Calculation Leading to Out-of-Bounds...
Oct 4th 2025
joelindra
•
pending
Faiss C API: Heap Buffer Overflow in IndexIVF (invlists_get_ids)
Jul 12th 2025
thevilledev
•
pending
Faiss C API: Uninitialized Memory in faiss_Index_sa_code_size Leading to Potenti...
Jun 21st 2025
thevilledev
•
pending
Bypass of RestrictedUnpickler in RPC Module Leads to Remote Code Execution
Feb 3rd 2025
shenaow
•
informative
Critical
Buffer Overflow
Oct 21st 2024
past3l
•
informative
High
Insecure Temporary File
May 23rd 2024
h2oa
•
not applicable
Malicious file loaded to RCE in big_batch_search
Feb 28th 2024
supersuperbang
•
informative
High
Floating Point Exception in index_factory
May 17th 2023
r3pwnx
•
pending
CRITICAL
$1500
HIGH
$750
MEDIUM
$125
LOW
$20