CVE advisoryCRITICAL
CVE-2025-61622
Pyfury Arbitrary Code Execution via Untrusted Data Deserialization
Halo Surface Signal: 3 out of 5 — possibly public-facing.
Deserialization of untrusted data in the pyfury library could allow arbitrary code execution if applications process data from untrusted sources. This vulnerability, if reachable, could permit an attacker to execute code on the affected system. Understanding the use of this library and its data sources within our appli