Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
High

CVE-2024-28397

Disclosure Date: June 20, 2024 (last updated June 21, 2024)
An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.
1
Attacker Value
Moderate

CVE-2024-39205

Disclosure Date: October 28, 2024 (last updated October 29, 2024)
An issue in pyload-ng v0.5.0b3.dev85 running under python3.11 or below allows attackers to execute arbitrary code via a crafted HTTP request.
1