A vulnerability classified as critical was found in Python Packaging Authority pip up to 26.1. This vulnerability affects unknown code. Executing a manipulation can lead to path traversal.

The identification of this vulnerability is CVE-2026-13346. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is advised.