GITHUBEXPLOIT 7.5 HIGH

Exploit for CVE-2025-4138_5082A5F9-2C69-5B9A-9CC3-86969E9C2A4A

7.5 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Description

CVE-2025-4138 — Python tarfile filter="data" Bypass Arbitrary file write outside the extraction directory via PATHMAX symlink chain. Affected Versions - Python 3.12.0 – 3.12.10 - Python 3.13.0 – 3.13.3 - Fixed in 3.12.11 / 3.13.4 Credit: Reporter:...
Visit Original Source

Basic Information

ID 5082A5F9-2C69-5B9A-9CC3-86969E9C2A4A
Published Feb 15, 2026 at 21:59
Modified Feb 15, 2026 at 22:00

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.