VYPR
High severity7.8OSV Advisory· Published Jul 4, 2024· Updated Jun 17, 2026

CVE-2024-39934

CVE-2024-39934

Description

Robotmk before 2.0.1 allows a local user to escalate privileges (e.g., to SYSTEM) if automated Python environment setup is enabled, because the "shared holotree usage" feature allows any user to edit any Python environment.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Robotmk/Robotmkllm-create
    Range: <2.0.1
  • Elabit/Robotmkllm-fuzzy2 versions
    <2.0.1+ 1 more
    • (no CPE)range: <2.0.1
    • (no CPE)range: stable, v2.0.0, v2.0.0-alpha, …

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.