A vulnerability has been found in huggingface transformers up to 4.52.x and classified as problematic. The impacted element is the function
_do_use_weight_decay
. Performing manipulation results in resource consumption.
This vulnerability is cataloged as CVE-2025-6921. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.