Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-9q9v-qgwx-84mr: Command injection in PaddlePaddle

PaddlePaddle before 2.5.0 has a command injection in fs.py. This resulted in the ability to execute arbitrary commands on the operating system.

ghsa
#git

Command injection in PaddlePaddle

Critical severity GitHub Reviewed Published Jul 26, 2023 to the GitHub Advisory Database • Updated Jul 26, 2023

Related news

CVE-2023-38673: Paddle/security/advisory/pdsa-2023-005.md at develop · PaddlePaddle/Paddle

PaddlePaddle before 2.5.0 has a command injection in fs.py. This resulted in the ability to execute arbitrary commands on the operating system.