https://seclists.org/oss-sec/2026/q1/100: Vulnerable tmpdir handling in pytest
Published Jan 21, 2026
·Updated
Affected Software
1 affected component
pypi/pytest
Frequently Asked Questions
1
What is the severity of CVE-2026-XXXXX?
The severity of CVE-2026-XXXXX is considered moderate due to potential risks in multi-user environments.
2
How do I fix CVE-2026-XXXXX?
To fix CVE-2026-XXXXX, upgrade to the latest version of pytest where the tmpdir handling has been addressed.
3
What systems are affected by CVE-2026-XXXXX?
CVE-2026-XXXXX affects systems running pytest, particularly in multi-user configurations or cloud CI environments.
4
Can CVE-2026-XXXXX lead to data exposure?
Yes, CVE-2026-XXXXX could potentially lead to data exposure due to insecure temporary directory handling.
5
What are the implications of CVE-2026-XXXXX for CI/CD pipelines?
CVE-2026-XXXXX can impact CI/CD pipelines by exposing sensitive data or allowing malicious users to access temporary files.