Skip to content

CVE-2025-69872 - on latest 5.6.3 - no fix available #362

@kahmad-dev

Description

@kahmad-dev

Description:

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.

https://nvd.nist.gov/vuln/detail/CVE-2025-69872

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions