CVE-2025-56005
Published Jan 20, 2026An undocumented and unsafe feature in the PLY (Python Lex-Yacc) library 3.11 allows Remote Code Execution (RCE) via the `picklefile` parameter in the `yacc()` function. This param…
- evidence mentions
- 13
- Buzz score
- 54.4