CVE-2026-53875: Picklescan
High severity, CVSS 7.1. EPSS: 0.7% chance of exploitation in the next 30 days.
picklescan before 1.0.3 contains a scanning bypass vulnerability in the scan_pytorch function that allows attackers to embed malicious magic numbers via dynamic eval using the __reduce__ trick. Attackers can craft malicious PyTorch payloads that evade picklescan detection while remaining executable, enabling arbitrary code execution when loaded with torch.load().
Affected products
- Picklescan Picklescan: before 1.0.3 (fixed in 1.0.3)
Published 2026-06-17. Last modified 2026-06-17.