Safety vulnerability ID: 62150
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Unsafe YAML deserialization in yaml.Loader in transmute-core before 1.13.5 allows attackers to execute arbitrary Python code.
https://github.com/toumorokoshi/transmute-core/pull/58
Latest version: 1.13.7
a utility library to help provide api route generation form function signature for web frameworks.
Unsafe YAML deserialization in yaml.Loader in transmute-core before 1.13.5 allows attackers to execute arbitrary Python code. See CVE-2023-47204.
MISC:https://github.com/toumorokoshi/transmute-core/pull/58: https://github.com/toumorokoshi/transmute-core/pull/58
MISC:https://github.com/toumorokoshi/transmute-core/releases/tag/v1.13.5: https://github.com/toumorokoshi/transmute-core/releases/tag/v1.13.5
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application