9.4
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Description
CVE-2025-4517 — Python tarfile filter="data" Bypass PoC Path traversal vulnerability in Python's tarfile module affecting versions 3.8.0 through 3.13.1. The filter="data" sandbox — intended to prevent unsafe extractions — can be bypassed by crafting...
Basic Information
ID
4AA60827-D3D1-5E3E-A866-9F15E21AFC63
Published
Feb 20, 2026 at 02:08
Modified
Feb 20, 2026 at 02:11