Description
uv is a Python package and project manager written in Rust. From 0.12.7 until 0.12.18, uv wheel extraction on Windows can process a malicious wheel in a way that writes a file outside the installation prefix, including an executable in a directory already present on the user's PATH. Non-Windows hosts are not affected. This issue is fixed in version 0.12.18.
Published: 2026-10-02
Score: 5.9 Medium
EPSS: n/a
KEV: No
Impact: Potential code execution via arbitrary file overwrite during wheel extraction
Action: Apply Patch
AI Analysis

Impact

This vulnerability allows an attacker to perform path traversal during wheel extraction on Windows systems, causing arbitrary files to be written outside the intended installation prefix. If the attacker can place an executable in a directory that is already on the user's PATH, the system may execute that file, leading to potential code execution. The weakness is categorized as CWE-22, indicating an insecure handling of filesystem paths.

Affected Systems

The issue affects the Astral-sh:uv package manager in versions 0.12.7 through 0.12.18, but only on Windows hosts; non‑Windows installations are not impacted.

Risk and Exploitability

The CVSS score is 5.9, which represents a moderate risk. No EPSS score is available, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector requires an attacker to supply a malicious wheel, meaning the threat is local but could be remote if the wheel is fetched from an untrusted repository. Given the lack of an official workaround, upgrading to a fixed version is the most reliable mitigation.

Generated by OpenCVE AI on October 2, 2026 at 16:20 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade uv to version 0.12.18 or later to receive the path‑validation fix.
  • Configure uv to install packages in an isolated or virtual environment so that extracted files cannot overwrite critical system locations.
  • Verify wheel integrity with checksum or signature validation before extraction to ensure only trusted content is unpacked.

Generated by OpenCVE AI on October 2, 2026 at 16:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 02 Oct 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 02 Oct 2026 15:45:00 +0000

Type Values Removed Values Added
Description uv is a Python package and project manager written in Rust. From 0.12.7 until 0.12.18, uv wheel extraction on Windows can process a malicious wheel in a way that writes a file outside the installation prefix, including an executable in a directory already present on the user's PATH. Non-Windows hosts are not affected. This issue is fixed in version 0.12.18.
Title uv: Path traversal on Windows through wheel extraction
Weaknesses CWE-22
References
Metrics cvssV4_0

{'score': 5.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-10-02T16:00:53.033Z

Reserved: 2026-10-02T14:38:43.243Z

Link: CVE-2026-104843

cve-icon Vulnrichment

Updated: 2026-10-02T16:00:13.161Z

cve-icon NVD

Status : Received

Published: 2026-10-02T16:16:46.760

Modified: 2026-10-02T16:16:46.760

Link: CVE-2026-104843

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-02T16:30:14Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')