CVE-2025-71352

HIGH

picklescan - Remote Code Execution via Undetected trace.Trace.runctx in Pickle Files

Title source: cna
STIX 2.1

Description

picklescan before 0.0.29 fails to detect the built-in Python trace.Trace.runctx function when used in pickle file reduce methods, allowing attackers to execute arbitrary code. Remote attackers can craft malicious pickle files with trace.Trace.runctx payloads that bypass picklescan detection and execute code upon pickle.load() invocation.

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory
VulnCheck Advisory: picklescan - Remote Code Execution via Undetected trace.Trace.runctx in Pickle Files
https://www.vulncheck.com/advisories/picklescan-remote-code-execution-via-undetected-trace-trace-runctx-in-pickle-files
Vendor Advisory vendor-advisory
GitHub Security Advisory (GHSA-g344-hcph-8vgg)
https://github.com/mmaitre314/picklescan/security/advisories/GHSA-g344-hcph-8vgg

Scores

CVSS v3 8.1
EPSS 0.0064
EPSS Percentile 47.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-693
Status published
Products (2)
picklescan/picklescan < 0.0.29
picklescan/picklescan 0.0.29
Published Jun 30, 2026
Tracked Since Jul 01, 2026