CVE-2025-71176

pytest through 9.0.2 on UNIX relies on directories with the /tmp/pytest-of-{user} name pattern, which allows local users to cause a denial of service or possibly gain privileges.

  • Published Jan 22, 2026
  • CVSS 6.8 medium
  • 0.2% chance of exploitation in the next 30 days (EPSS)

Affected software

In the news

CVE-2025-71176 at the National Vulnerability Database