PyPi: Pyload

CVE-2024-32880

Safety vulnerability ID: 70714

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Apr 26, 2024 Updated at May 01, 2024
Scan your Python projects for vulnerabilities →

Advisory

pyload is an open-source Download Manager written in pure Python. An authenticated user can change the download folder and upload a crafted template to the specified folder lead to remote code execution. There is no fix available at the time of publication. See CVE-2024-32880.

Affected package

pyload

Latest version: 0.1

pyload is a tool to create static binary from python code

Affected versions

Fixed versions

Vulnerability changelog

pyload is an open-source Download Manager written in pure Python. An authenticated user can change the download folder and upload a crafted template to the specified folder lead to remote code execution. There is no fix available at the time of publication. See CVE-2024-32880.


MISC:https://github.com/pyload/pyload/security/advisories/GHSA-3f7w-p8vr-4v5f: https://github.com/pyload/pyload/security/advisories/GHSA-3f7w-p8vr-4v5f

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application