© 2025-2026 PySpect
No release of horovod is currently known to be free of vulnerabilities.
Horovod contains an insecure deserialization vulnerability in its KVStore HTTP server component
Horovod Vulnerable to Command Injection
Use of insecure temporary file in Horovod
Fixed in: 0.24.0, b96ecae4dc69fc0a83c7c2d3f1dde600c20a1b41