ZeroHour

CVE-2024-23731

CVSS 3.1
9.8 critical
EPSS
1%p63
Published
()
Modified
Description

The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code, related to the openapi.py yaml.load function argument.

Vendors
embedchain
Products
embedchain
Weakness
CWE-88
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.