Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-10157

28
FAUCET Score

CVE-2025-10157 is a Protection Mechanism Failure vulnerability in mmaitre314 picklescan versions up to 0.0.30. It allows a remote attacker to bypass the unsafe globals check by exploiting the scanner's exact module name matching, enabling malicious code execution through submodules of dangerous packages. This vulnerability carries a CVSS score of 7.8 (High), indicating a significant risk. An attacker can achieve high impact on confidentiality, integrity, and availability with low attack complexity, though user interaction is required. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Despite this, the vulnerability has garnered some community discussion and media coverage, highlighting its potential impact on AI model supply chains.

Impacted Technologies

VendorProductVersion(s)CPE
< 0.0.31CPE matchmatch criteria
cpe:2.3:a:mmaitre314:picklescan:*:*:*:*:*:*:*:*
>= 0, <= 0.0.30CPE match
cpe:2.3:a:mmaitre314:picklescan:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

9.3CRITICAL

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
NONE
VS Confidentiality
HIGH
VS Integrity
HIGH
VS Availability
HIGH
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.76%
Probability of exploitation in next 30 days
EPSS Percentile
51.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0076 is in the 48th percentile among its peer group of 11,621 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

pippatch availablevia ghsa
Product: picklescanFixed in: 0.0.31
github_advisoryvendor investigatingvia nvd_reference
View patch

Vendor Advisories (1)

pipGHSA-f7qq-56ww-84crcritical

Picklescan is Vulnerable to Unsafe Globals Check Bypass through Subclass Imports

Sep 10, 2025

References

github.com / mmaitre314/picklescan/blob/2a8383cfeb4158567f9770d86597300c9e508d0f/src/picklescan/scanner.py
Product
github.com / mmaitre314/picklescan/security/advisories/GHSA-f7qq-56ww-84cr
ExploitVendor Advisory
huggingface.co / iluem/linux_pkl/resolve/main/asyncio_asyncio_unix_events___UnixSubprocessTransport__start.pkl
Broken Link