{"id":"CVE-2026-84809","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-84809","summary":"Tencent AI-Infra-Guard skill-scan Analysis Bypass via Excluded Python Bytecode","details":"Tencent AI-Infra-Guard's skill-scan component excludes compiled Python bytecode files from analysis by hardcoding __pycache__ directories and .pyc/.pyo/.pyd extensions into skip lists across multiple scanning surfaces. Attackers can distribute skills with benign Python source files alongside malicious compiled bytecode that executes on import while the scanner reports a safe verdict, enabling code execution when operators install the skill.","published":"2026-09-02T16:59:48.800Z","modified":"2026-09-04T03:47:24.820146665Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":{"url":"https://github.com/Tencent/AI-Infra-Guard/commit/7e0f749e3c023e5c6ab7b32fe97b3f6f2e8aeb04","label":"Tencent/AI-Infra-Guard@7e0f749"},"references":[{"type":"WEB","url":"https://pypi.org"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/84xxx/CVE-2026-84809.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84809"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/tencent-ai-infra-guard-skill-scan-analysis-bypass-via-excluded-python-bytecode"},{"type":"REPORT","url":"https://github.com/Tencent/AI-Infra-Guard/issues/531"},{"type":"FIX","url":"https://github.com/Tencent/AI-Infra-Guard/commit/7e0f749e3c023e5c6ab7b32fe97b3f6f2e8aeb04"},{"type":"PACKAGE","url":"https://github.com/Tencent/AI-Infra-Guard"},{"type":"ARTICLE","url":"https://github.com/Tencent/AI-Infra-Guard/blob/v4.6.0/skill-scan/skill_scan/tools/dir/dir_actions.py"},{"type":"ARTICLE","url":"https://github.com/Tencent/AI-Infra-Guard/blob/v4.6.0/skill-scan/skill_scan/utils/pre_scan.py"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-09-04T03:47:24.820146665Z"}}