An issue in langchain langchain-ai v.0.0.232 and before allows a remote attacker to execute arbitrary code via a crafted script to the PythonAstREPLTool._run component.Read More ...
Continue ReadingAugust 15, 2023
An issue in Python cpython v.3.7 allows an attacker to obtain sensitive information via the _asyncio._swap_current_task component.Read More ...
Continue ReadingAugust 15, 2023
A missing authorization check allows an arbitrary authenticated user to perform certain operations through the API of CLA-assistant by executing specific additional steps. This allows an arbitrary aut ...
Continue ReadingAugust 15, 2023
An issue in Alluxio v.2.9.3 and before allows an attacker to execute arbitrary code via a crafted script to the username parameter of lluxio.util.CommonUtils.getUnixGroups(java.lang.String).Read More ...
Continue ReadingAugust 15, 2023
An issue in llama_index v.0.7.13 and before allows a remote attacker to execute arbitrary code via the `exec` parameter in PandasQueryEngine function.Read More ...
Continue ReadingAugust 15, 2023
An issue in LangChain v.0.0.231 allows a remote attacker to execute arbitrary code via the prompt parameter.Read More ...
Continue ReadingAugust 15, 2023
An issue in Harrison Chase langchain v.0.0.194 and before allows a remote attacker to execute arbitrary code via the from_math_prompt and from_colored_object_prompt functions.Read More ...
Continue ReadingAugust 15, 2023
SQL Injection vulnerability in eVotingSystem-PHP v.1.0 allows a remote attacker to execute arbitrary code and obtain sensitive information via the user input fields.Read More ...
Continue ReadingAugust 15, 2023
Back to Main