VYPR

transcribe-anything

by Zackees

CVEs (1)

  • CVE-2026-79792MedAug 25, 2026
    risk 0.36cvss 5.6epss

    A flaw has been found in zackees transcribe-anything up to 4.1.0. Affected is the function ytdlp_download of the file src/transcribe_anything/ytldp_download.py of the component Yt-dlp Download. This manipulation of the argument url causes os command injection. The attack may be…