---
id: CVE-2025-67748
title: Fickling is a Python pickling decompiler and static analyzer
summary: >-
  Fickling is a Python pickling decompiler and static analyzer. Versions prior
  to 0.1.6 had a bypass caused by `pty` missing from the block list of unsafe
  module imports. This led to unsafe pickles based on `pty.spawn()` being
  incorrectly …
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'
cwe:
  - CWE-94
  - CWE-184
  - CWE-502
vendor: trailofbits
product: fickling
affected:
  - fickling < 0.1.6
patched:
  - fickling 0.1.6
published: '2025-12-16'
updated: '2026-10-07'
sourceUpdated: '2026-10-07T19:10:00.160'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-67748'
references:
  - url: 'https://github.com/trailofbits/fickling/pull/108'
    label: security-advisories@github.com
  - url: 'https://github.com/trailofbits/fickling/pull/187'
    label: security-advisories@github.com
  - url: >-
      https://github.com/trailofbits/fickling/security/advisories/GHSA-r7v6-mfhq-g3m2
    label: security-advisories@github.com
tags:
  - nvd
epss: 0.0027
epssPercentile: 0.1749
ingestedAt: '2026-10-07T20:46:46.945Z'
---

## Overview

Fickling is a Python pickling decompiler and static analyzer. Versions prior to 0.1.6 had a bypass caused by `pty` missing from the block list of unsafe module imports. This led to unsafe pickles based on `pty.spawn()` being incorrectly flagged as `LIKELY_SAFE`, and was fixed in version 0.1.6. This impacted any user or system that used Fickling to vet pickle files for security issues.

## Affected

- `fickling < 0.1.6`

## Remediation

Upgrade past the affected range:

- `fickling 0.1.6`
