CVE-2025-71366 | picklescan up to 0.0.27 torch.utils.bottleneck.__main__.run_cprofile deserialization (GHSA-4r9r-ch6f-vxmx / EUVD-2025-210420)

SecurityVulns

A vulnerability has been found in picklescan up to 0.0.27 and classified as critical. This impacts the function torch.utils.bottleneck.__main__.run_cprofile. The manipulation leads to deserialization.

This vulnerability is listed as CVE-2025-71366. The attack may be initiated remotely. There is no available exploit.

The affected component should be upgraded.VulDB Recent EntriesRead More