mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-28 15:31:27 +02:00
781 B
781 B
CVE-2021-23338
Description
This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function.
POC
Reference
- https://github.com/418sec/huntr/pull/1329
- https://github.com/418sec/huntr/pull/1329
- https://snyk.io/vuln/SNYK-PYTHON-QLIB-1054635
- https://snyk.io/vuln/SNYK-PYTHON-QLIB-1054635