{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3apythonpython3.14.0alpha1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:python:python:*:*:*:*:*:*:*:*","cpe:2.3:a:python:python:3.14.0:alpha1:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.8,"id":"CVE-2024-9287"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["CPython"],"_cs_severities":["medium"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Python Software Foundation"],"content_html":"\u003cp\u003eThe Python Software Foundation has identified a vulnerability in the CPython tempfile module (CVE-2024-9287) that affects the way temporary files are created. A local attacker can exploit this flaw by leveraging symbolic link (symlink) race conditions during the file creation process. By placing a symlink at the expected location of a temporary file, an attacker may force the application or process to perform operations on unintended files. This can lead to unauthorized file manipulation, privilege escalation, or the bypass of security restrictions depending on the privileges of the executing application. This issue is relevant for environments where multiple users or processes with different privilege levels share local storage.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows local attackers to perform file manipulation outside of intended directories. This may result in the overwriting of sensitive configuration files, log tampering, or potential privilege escalation if the affected process runs with elevated system permissions. This vulnerability impacts all platforms including Windows, Linux, and macOS.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the identification of applications in your environment that utilize the CPython tempfile module to create files in shared directories. Consult the Python Software Foundation documentation for patched versions of CPython and apply updates to all affected systems. Ensure that internal applications follow secure coding practices by avoiding predictable temporary file paths and utilizing secure creation methods such as those provided by the updated tempfile library.\u003c/p\u003e\n","date_modified":"2026-09-30T16:23:12Z","date_published":"2026-09-30T16:23:12Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cpython-tempfile-vulnerability/","summary":"A vulnerability in the CPython tempfile module allows a local attacker to perform symlink attacks, potentially leading to unauthorized file manipulation or security constraint bypasses.","title":"CPython tempfile Module Symlink Vulnerability","url":"https://feed.craftedsignal.io/briefs/2026-09-cpython-tempfile-vulnerability/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:python:python:3.14.0:alpha1:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}