VYPR

Python Liquid

by Jg Rp

CVEs (1)

  • CVE-2026-45017HigMay 28, 2026
    risk 0.42cvss 7.5epss 0.00

    Python Liquid is a Python engine for the Liquid template language. Prior to 2.2.0, the built-in FileSystemLoader and CachingFileSystemLoader do not guard against reading files outside their search paths when given an absolute path to resolve. This allows malicious template…