highCVSS 7.5Vulnerability

GHSA-5v23-73v4-w2fp

### Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-9726-w42j-3qjr. This link is maintained to preserve external references. ### Original Description picklescan before 0.0.35 contains an unsafe pickle deserialization vulnerability allowing unauthenticated attackers to read arbitrary server files by chaining io.FileIO and urllib.request.urlopen. Attackers can bypass RCE-focused blocklists to exfiltrate sensitive data like /etc/passwd to external servers.

Properties

ghsa_id
GHSA-5v23-73v4-w2fp
summary
Duplicate Advisory: picklescan has Arbitrary file read using `io.FileIO`
severity
high
cvss_score
7.5
cve_id
GHSA-5v23-73v4-w2fp
cvss_vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
is_ghsa_only
true
ghsa_published
2026-06-17T18:35:57Z
source_url
https://github.com/advisories/GHSA-5v23-73v4-w2fp
ghsa_updated
2026-06-18T14:46:11Z

Related Entities (4)

REPORTED_BY (1)

[Source]GitHub Advisory Database

VULNERABLE_TO (1)

[Software]pip/picklescan

AFFECTS (1)

[Software]pip/picklescan

HAS_WEAKNESS (1)

[Weakness]Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Explore deeper with Ninja Signal's threat intelligence graph