modelscan file object constructor coverage-gap PoC
This repository contains a small pickle artifact for a huntr Model File
Vulnerability report.
The artifact is intentionally low impact. When loaded in a local verification
harness, it opens a relative canary file named modelscan_fileio_canary.txt in
the current working directory. It does not start processes or make network
requests.
The local verification script is:
projects/huntr-mfv/scripts/verify_modelscan_fileio_constructor_gap.py