Picklescan是美国Matthieu Maitre个人开发者的一款扫描Pickle文件安全风险的静态分析工具。 Matthieu Maitre Picklescan 0.0.25之前版本存在输入验证错误漏洞,该漏洞源于未能检测Numpy库中的不安全全局函数,导致攻击者可以通过reduce方法使用numpy.testing._private.utils.runstring构造恶意pickle文件,导入危险的库(如os)并执行任意OS命令。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Picklescan | Picklescan | < 0.0.25 |
affected |
0.0.25 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Picklescan | Picklescan | 0 ~ 0.0.25 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-71352 | 8.1 HIGH | picklescan - Remote Code Execution via Undetected trace.Trace.runctx in Pickle Files |
| CVE-2025-71349 | 8.1 HIGH | picklescan - Arbitrary Code Execution via Undetected trace.Trace.run in Pickle Files |
| CVE-2025-71350 | 8.1 HIGH | picklescan - Undetected Remote Code Execution via torch.utils.collect_env.run |
| CVE-2025-71371 | 8.1 HIGH | picklescan - Remote Code Execution via code.InteractiveInterpreter Detection Bypass |
| CVE-2025-71368 | 8.1 HIGH | picklescan - Arbitrary Code Execution via Undetected doctest.debug_script |
| CVE-2025-71374 | 8.1 HIGH | picklescan - Arbitrary Code Execution via Undetected profile.Profile.run |
| CVE-2025-71363 | 8.1 HIGH | picklescan - Arbitrary Code Execution via Undetected cProfile.run in Pickle Deserializatio |
No comments yet