PT-2026-51762 · Pypi · Picklescan

·

CVE-2025-71354

·

Published

2025-08-26

·

Updated

2026-07-07

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions picklescan versions prior to 0.0.29
Description An issue exists where the software fails to detect malicious pickle files that utilize the SetText function within idlelib.debugobj.ObjectTreeItem inside reduce methods. Attackers can craft pickle files with embedded code that bypasses detection, leading to remote code execution when pickle.load() is called. This can be used in supply chain attacks by distributing infected pickle files across machine learning models, APIs, or saved Python objects.
Recommendations Update to version 0.0.29 or later.

Exploit

Fix

RCE

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-71354
GHSA-3VG9-H568-4W9M
PYSEC-2026-1781

Affected Products

Picklescan