PyPI package
nameko
pkg:pypi/nameko
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-41078 | Hig | 7.8 | < 2.14.0 | 2.14.0 | Oct 26, 2021 | Nameko through 2.13.0 can be tricked into performing arbitrary code execution when deserializing the config file. |
- affected < 2.14.0fixed 2.14.0
Nameko through 2.13.0 can be tricked into performing arbitrary code execution when deserializing the config file.