PT-2026-37051 · Pyload+2 · Pyload+1

Shmulc8

·

Published

2026-05-04

·

Updated

2026-05-15

·

CVE-2026-42313

CVSS v3.1

8.3

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
CVE-2026-42313 pyLoad is a free and open-source download manager written in Python. Prior to 0.5.0b3.dev100, the set config value() API method (@permission(Perms.SETTINGS)) in src/p… https://t.co/8rZNAbQm5s

Exploit

Fix

Incorrect Authorization

SSRF

Weakness Enumeration

Related Identifiers

CVE-2026-42313
GHSA-PG67-9WJV-MR85
PYSEC-2026-127

Affected Products

Pyload
Pyload-Ng