CVE-2025-71348 | picklescan up to 0.0.27 torch.utils._config_module.load_config deserialization (GHSA-vv6j-3g6g-2pvj)

SecurityVulns

A vulnerability was found in picklescan up to 0.0.27. It has been declared as critical. This affects the function torch.utils._config_module.load_config. Executing a manipulation can lead to deserialization.

This vulnerability is handled as CVE-2025-71348. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More