Unsloth Studio model loader allowed remote code execution
🛡️ Pillar Security found that selecting a model in Unsloth Studio caused the application to download and execute Python code from model repositories. The issue arose because Unsloth enabled Hugging Face's trust_remote_code automatically during routine model checks, running code just by reading a model's config.json. Unsloth patched the behavior in version 2026.6.9 and users are urged to upgrade and audit uses of trust_remote_code.
