Safety vulnerability ID: 59228
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Shinylive 0.0.8 includes a fix for CVE-2007-4559: Directory traversal vulnerability in the (1) extract and (2) extractall functions in the tarfile module in Python allows user-assisted remote attackers to overwrite arbitrary files via a .. (dot dot) sequence in filenames in a TAR archive, a related issue to CVE-2001-1267.
Latest version: 0.7.1
Run Shiny applications running Python in the browser.
New features
* Updated to Shinylive web assets 0.0.11.
Bug fixes
* Added fix to avoid tarfile path traversal (CVE-2007-4559). (3)
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application