CVE-2025-69872
CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th
DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.
| Vendor | n/a |
| Product | n/a |
| Published | Feb 11, 2026 |
| Last Updated | Jun 30, 2026 |
Stay Ahead of the Next One
Get instant alerts for n/a n/a
Be the first to know when new critical vulnerabilities affecting n/a n/a are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
n/a / n/a
n/a
References
github.com: https://github.com/grantjenks/python-diskcache github.com: https://github.com/EthanKim88/ethan-cve-disclosures/blob/main/CVE-2025-69872-DiskCache-Pickle-Deserialization.md access.redhat.com: https://access.redhat.com/security/cve/CVE-2025-69872 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2439059 security.access.redhat.com: https://security.access.redhat.com/data/csaf/v2/vex/2025/cve-2025-69872.json access.redhat.com: https://access.redhat.com/errata/RHSA-2026:3713