CVE-2025-7346
Any unauthenticated attacker can bypass the localhost
restrictions posed by the application and utilize this to create
arbitrary packages
Assigner : disclosure@toreon.com
More information : https://github.com/pyload/pyload/security/advisories/GHSA-x698-5hjm-w2m5