CVE-2025-71369
picklescan
picklescan before 0.0.28 fails to detect malicious pickle files that use torch.utils.data.datapipes.utils.decoder.basichandlers in reduce methods, allowing attackers to bypass safety checks. Remote attackers can embed undetected malicious code in pickle files that executes during deserialization, enabling remote code execution.
- CVSS
- 7.6
- EPSS
- 0.45% 36.6% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.04