VYPR
Unrated severityNVD Advisory· Published May 13, 2020· Updated Aug 4, 2024

Remote Code Execution in Autoswitch Python Virtualenv

CVE-2020-11073

Description

In Autoswitch Python Virtualenv before version 0.16.0, a user who enters a directory with a malicious .venv file could run arbitrary code without any user interaction. This is fixed in version: 1.16.0

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.