Skip to content
Noroxi

trailofbits records

12 published records for vendor trailofbits.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
83.3%
Median publish → KEV
No record has entered KEV

All records

12 records
  • uthenticode signature validation bypass vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    trailofbits · uthenticodeAug 9, 2023

  • Fickling MLAllowlist analysis pass rendered inoperative by shared mutable state in AnalysisContext.shorten_code()

    CriticalCVSS 9.8No exploitEPSS 1%

    trailofbits · ficklingJul 4, 2026

  • Fickling has Static Analysis Bypass via Incomplete Dangerous Module Blocklist

    HighCVSS 8.9No exploitEPSS 1%

    trailofbits · ficklingJan 9, 2026

  • Fickling check_safety() bypass via unlisted standard library modules (_posixsubprocess, site, atexit)

    HighCVSS 8.8No exploitEPSS 1%

    trailofbits · ficklingJul 4, 2026

  • Fickling Blocklist Bypass: cProfile.run()

    HighCVSS 8.9No exploitEPSS 1%

    trailofbits · ficklingJan 9, 2026

  • Fickling has a bypass via runpy.run_path() and runpy.run_module()

    HighCVSS 8.9No exploitEPSS 0%

    trailofbits · ficklingJan 9, 2026

  • Fickling vulnerable to use of ctypes and pydoc gadget chain to bypass detection

    HighCVSS 8.9No exploitEPSS 0%

    trailofbits · ficklingJan 9, 2026

  • Fickling vulnerable to detection bypass due to "builtins" blindness

    HighCVSS 8.9No exploitEPSS 0%

    trailofbits · ficklingJan 9, 2026

  • uthenticode EKU validation bypass

    HighCVSS 7.5No exploitEPSS 0%

    trailofbits · uthenticodeAug 9, 2023

  • Improper Certificate Validation in rfc3161-client

    HighCVSS 7.5No exploitEPSS 0%

    trailofbits · rfc3161-clientApr 8, 2026

  • Fickling has missing detection for marshal.loads and types.FunctionType in unsafe modules list

    HighCVSS 7.1No exploitEPSS 0%

    trailofbits · ficklingDec 15, 2025

  • Fickling has Code Injection vulnerability via pty.spawn()

    HighCVSS 7.1No exploitEPSS 0%

    trailofbits · ficklingDec 15, 2025