CVE-2015-5652: Python
High severity, CVSS 7.2. EPSS: 0.6% chance of exploitation in the next 30 days.
Untrusted search path vulnerability in python.exe in Python through 3.5.0 on Windows allows local users to gain privileges via a Trojan horse readline.pyd file in the current working directory. NOTE: the vendor says "It was determined that this is a longtime behavior of Python that cannot really be altered at this point."
Affected products
- Python Python: up to and including 3.5.0
Published 2015-10-06. Last modified 2026-06-17.