
🚨 HIGH: CVE-2025-71353 (CVSS 8.1) picklescan <0.0.28 fails to detect malicious pickle files exploiting torch._dynamo.guards.GuardBuilder[.]get. Attackers can execute arbitrary commands. Update to v0.0.28+ immediately. #CVE #Vulnerability #PatchNow https://t.co/ii9ZYMLxUm
Post summary
The tweet highlights a high‑severity CVE‑2025‑71353 affecting picklescan <0.0.28, describes an arbitrary‑code‑execution flaw, and urges users to upgrade to v0.0.28+ to apply the vendor’s patch.
