pypickle
pypickle is a Python library to save and load variables in pickle files.
Activity
- Latest release
- 1mo ago
- Total releases
- 11
- Cadence
- ~42 days
- Last 12 months
- 1
Details
- License
- MIT
- First release
- Jul 10, 2020
| Version | Released | |
|---|---|---|
2.0.2
patch
|
2.0.2
patch
|
|
2.0.1
patch
|
2.0.1
patch
|
|
2.0.0
major
|
2.0.0
major
|
|
1.1.5
patch
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
1.1.5
patch
|
|
1.1.4
patch
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
1.1.4
patch
|
|
1.1.3
patch
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
1.1.3
patch
|
|
1.1.1
patch
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
1.1.1
patch
|
|
1.1.0
minor
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
1.1.0
minor
|
|
1.0.0
major
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
1.0.0
major
|
|
0.1.1
patch
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
0.1.1
patch
|
|
0.1.0
initial
2 CVEs
CVE-2025-5174
GHSA-5qwj-342r-h886
PYSEC-2025-45
May 26, 2025
pypickle unsafe deserialization vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5 and classified as problematic. Affected by this issue is the function load of the file pypickle/pypickle.py. The manipulation leads to deserialization. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is identified as 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev
CVE-2025-5175
GHSA-qpxx-2cwh-r5vh
PYSEC-2025-46
May 26, 2025
pypickle Incorrect Privilege Assignment vulnerability
Medium
Local
Low
Low
None
A vulnerability was found in erdogant pypickle up to 1.1.5. It has been classified as critical. This affects the function Save of the file pypickle/pypickle.py. The manipulation leads to improper authorization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. Upgrading to version 2.0.0 is able to address this issue. The patch is named 14b4cae704a0bb4eb6723e238f25382d847a1917. It is recommended to upgrade the affected component. Affected versions
0.1.0
0.1.1
1.0.0
1.1.0
1.1.1
1.1.3
1.1.4
1.1.5
Fixed in
2.0.0
References
Updated Jun 04, 2025 · Source: OSV.dev |
0.1.0
initial
|