A security notice published on September 28, 2026 reports that a flaw in Requests' generation of random paths for temporary files could allow arbitrary code execution.
Ubuntu Security notice USN-8825-1 says Requests did not correctly generate random paths for temporary files. According to the notice, an attacker could possibly exploit the issue to execute arbitrary code. It was published on September 28, 2026.
The available summary does not specify affected versions or fixes. Consult the original Ubuntu Security notice to confirm those details and check whether your organization's systems are affected; do not assume an installation is protected without reviewing the official guidance.