Executive brief
pyLoad CNL Blueprint allows Path Traversal through `dlc_path` which leads to Remote Code Execution (RCE)
Affected products
- PyPI pyload-ng
Junglewise Threat Intelligence
CVE-2025-54802 · Severity: low · CVSS 3.1 · Published 2026-06-29
Technologies: pyload-ng (PyPI). Vendors: PyPI.
pyLoad CNL Blueprint allows Path Traversal through `dlc_path` which leads to Remote Code Execution (RCE)