VYPR

Jw.util

by Python (programming language)

CVEs (1)

  • CVE-2020-13388CriMay 22, 2020
    risk 0.64cvss 9.8epss 0.04

    An exploitable vulnerability exists in the configuration-loading functionality of the jw.util package before 2.3 for Python. When loading a configuration with FromString or FromStream with YAML, one can execute arbitrary Python code, resulting in OS command execution, because…