CVE-2025-69872

DiskCache (python-diskcache) through 5.6.3 uses Python pickle for serialization by default. An attacker with write access to the cache directory can achieve arbitrary code execution when a victim application reads from the cache.
Configurations

No configuration.

History

No history.

Information

Published : 2026-02-11 19:15

Updated : 2026-07-15 02:17


NVD link : CVE-2025-69872

Mitre link : CVE-2025-69872

CVE.ORG link : CVE-2025-69872


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

CWE-502

Deserialization of Untrusted Data