Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Mmaitre314

First CVE: Feb 26, 2025Active for: 1 yearTotal CVEs: 12
48.1
VTI Score
High

Mmaitre314 maintains a focused security tooling product, Picklescan, designed to detect and validate untrusted serialized Python objects and protect against deserialization attacks. Vulnerabilities in this product skew strongly toward critical-severity outcomes and center on weaknesses in input validation, data authentication, and exception handling that can undermine the integrity of the scanning logic itself. Defenders deploying deserialization defenses should track this vendor's updates closely, as flaws in validation tooling can have outsized impact on downstream security posture; live severity and exploitation counts are shown alongside this summary.

FAUCET AI Generated
12
Total CVEs
More Total CVEs than 93% of tracked vendors
6.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 98% of tracked vendors
8.3
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Mmaitre314 over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 26, 2025
16 months ago
Most Recent CVE
Jun 21, 2026
37 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (12 CVEs).

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-10156CRITICAL
An Improper Handling of Exceptional Conditions vulnerability in the ZIP archive scanning component of mmaitre314 picklescan allows a remote attacker to bypass security scans. This
Sep 17, 20259.834NONO
CVE-2025-71348HIGH
picklescan before 0.0.28 fails to detect malicious pickle files that invoke torch.utils._config_module.load_config function within reduce methods. Attackers can craft pickle files
Jun 21, 20268.132NONO
CVE-2025-71378HIGH
picklescan before 0.0.30 fails to detect cProfile.runctx function calls in pickle file reduce methods, allowing attackers to execute arbitrary code. Malicious pickle files bypass p
Jun 21, 20268.131NONO
CVE-2025-71357HIGH
picklescan before 0.0.30 fails to detect malicious pickle files using idlelib.pyshell.ModifiedInterpreter.runcommand in reduce methods. Attackers can embed undetected code in pickl
Jun 21, 20268.131NONO
CVE-2025-10155HIGH
An Improper Input Validation vulnerability in the scanning logic of mmaitre314 picklescan versions up to and including 0.0.30 allows a remote attacker to bypass pickle files securi
Sep 17, 20257.829NONO
CVE-2025-10157HIGH
A Protection Mechanism Failure vulnerability in mmaitre314 picklescan versions up to and including 0.0.30 allows a remote attacker to bypass the unsafe globals check. This is possi
Sep 17, 20257.828NONO
CVE-2025-1716CRITICAL
picklescan before 0.0.21 does not treat 'pip' as an unsafe global. An attacker could craft a malicious model that uses Pickle to pull in a malicious PyPI package (hosted, for examp
Feb 26, 20259.828NONO
CVE-2026-56304MEDIUM
picklescan before 1.0.1 contains an unsafe pickle deserialization vulnerability allowing unauthenticated attackers to create arbitrary zero-byte files via logging.FileHandler class
Jun 20, 20266.527NONO
CVE-2025-1945CRITICAL
picklescan before 0.0.23 fails to detect malicious pickle files inside PyTorch model archives when certain ZIP file flag bits are modified. By flipping specific bits in the ZIP fil
Mar 10, 20259.827NONO
CVE-2025-1889CRITICAL
picklescan before 0.0.22 only considers standard pickle file extensions in the scope for its vulnerability scan. An attacker could craft a malicious model that uses Pickle and incl
Mar 3, 20259.826NONO
View all 12 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products12 CVEs
17%
50%
33%
Severity distribution among all CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (16.7%)
Network10 (83.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (58.3%)
Unknown0 (0.0%)
Required5 (41.7%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None12 (100.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Mmaitre314.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Mmaitre314 — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Mmaitre314's Products

View all 4 CNAs →

Top CWEs