Skip to content

[Med] Snyk - Arbitrary Code Execution (due 9/10) #3280

@lbeaufort

Description

@lbeaufort

Vulnerable module: PyYAML

Introduced through: [email protected][email protected][email protected] Removed
Introduced through: [email protected][email protected][email protected][email protected]
Introduced through: [email protected][email protected][email protected]

No current remediation path. Best choice is to see what we can swap out for other packages or remove.

After discussing with @vrajmohan and putting in an issue to apispec to address the PyYAML vulnerability, our best approach is to:

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions