ZeroHour

CVE-2021-42771

PoC
CVSS 3.1
7.8 high
EPSS
<1%p54
Published
()
Modified
Description

Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.

Vendors
pocoodebian
Products
babel, debian linux
Weakness
CWE-22
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.