PT-2026-50453 · Pypi · Picklescan

·

CVE-2025-71322

·

Published

2025-12-29

·

Updated

2026-07-07

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PickleScan versions prior to 0.0.33
Description PickleScan fails to include the pty.spawn function in its list of unsafe globals, which allows attackers to bypass security checks. By crafting malicious pickle payloads using the pty.spawn function, an attacker can achieve arbitrary code execution when files, such as PyTorch models or ZIP archives, are processed by the software.
Recommendations Update to version 0.0.33 or later.

Exploit

Fix

Protection Mechanism Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-71322
GHSA-5GP7-4733-2W2V
GHSA-HGRH-QX5J-JFWX
PYSEC-2026-1790

Affected Products

Picklescan