CNNVD-202508-1711 Information

CNNVD ID

CNNVD-202508-1711

CVE-2025-50817

  • CNNVD Published: 2025-08-14

Description (Chinese)

python-future是Python Charmers开源的一个Python兼容软件。 python-future 1.0.0版本存在安全漏洞,该漏洞源于自动导入test.py文件,可能导致执行任意代码。

Description (English)

Python-future is a Python-compatible software from the Python Charmings open source. There is a security loophole in version python-future 1.0.0, which originates from the automatic import of test.py files, which may lead to the implementation of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Python Charmers

Published

2025-08-14

Last Modified

2026-02-24

References

https://pypi.org/project/future/ https://medium.com/@abcd_68700/cve-2025-50817-python-future-module-arbitrary-code-execution-via-unintended-import-of-test-py-f0818ea93cf4 https://gist.github.com/fried/d2108a4932f3a22712dfc04598b5b8ce https://github.com/PythonCharmers/python-future https://nvd.nist.gov/vuln/detail/CVE-2025-50817

Share on: