CVE-2014-1604: Python Rply

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The parser cache functionality in parsergenerator.py in RPLY (aka python-rply) before 0.7.1 allows local users to spoof cache data by pre-creating a temporary rply-*.json file with a predictable name.

Affected products

  • Python Rply: up to and including 0.7.0

Published 2014-01-28. Last modified 2026-06-17.