Description
This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0209 | This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function. |
Github GHSA |
GHSA-hjr4-fhgp-23g9 | qlib Deserialization of Untrusted Data vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-09-16T17:49:26.778Z
Reserved: 2021-01-08T00:00:00.000Z
Link: CVE-2021-23338
No data.
Status : Modified
Published: 2021-02-15T16:15:15.263
Modified: 2024-11-21T05:51:31.840
Link: CVE-2021-23338
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA