VYPR

PyPI package

cleanlab

pkg:pypi/cleanlab

Vulnerabilities (1)

  • CVE-2024-45857HigSep 12, 2024
    affected >= 2.4.0, <= 2.6.6

    Deserialization of untrusted data can occur in versions 2.4.0 or newer of the Cleanlab project, enabling a maliciously crafted datalab.pkl file to run arbitrary code on an end user’s system when the data directory is loaded.