VYPR

collections

by zenstruck

Source repositories

CVEs (1)

  • CVE-2023-37473Jul 14, 2023
    risk 0.00cvss epss 0.00

    zenstruck/collections is a set of helpers for iterating/paginating/filtering collections. Passing _callable strings_ (ie `system`) caused the function to be executed. This would result in a limited subset of specific user input being executed as if it were code. This issue has…