Executive brief
python-socketio vulnerable to arbitrary Python code execution (RCE) through malicious pickle deserialization in certain multi-server deployments
Affected products
- PyPI python-socketio
Junglewise Threat Intelligence
CVE-2025-61765 · Severity: low · CVSS 3.1 · Published 2026-07-07
Vendors: PyPI.
python-socketio vulnerable to arbitrary Python code execution (RCE) through malicious pickle deserialization in certain multi-server deployments