
🟠 CVE-2025-70560 - High Boltz 2.0.0 contains an insecure deserialization vulnerability in its molecule loading functionality. The application uses Python pickle to deserialize molecule data files without validation.... https://www.thehackerwire.com/vulnerability/CVE-2025-70560/ https://t.co/i5PVvUqGXD
Post summary
The post discloses CVE‑2025‑70560 as an insecure deserialization flaw in Boltz 2.0.0 that uses Python pickle without validation, without mentioning exploitation, patches, or PoC.

