CVE-2025-27154 | spotipy-dev spotipy up to 2.25.0 CacheHandler default permission (GHSA-pwhh-q4h6-w599 / Nessus ID 232525)
A vulnerability classified as critical has been found in spotipy-dev spotipy up to 2.25.0. Affected is the function CacheHandler. The manipulation leads to incorrect default permissions.
This vulnerability is traded as CVE-2025-27154. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.