The unsafe globals in Picklescan before 0.0.25 do not include ssl. Consequently, ssl.getservercertificate can exfiltrate data via DNS after deserialization.
"https://github.com/pypa/advisory-database/blob/main/vulns/picklescan/PYSEC-2025-34.yaml"