Headline
GHSA-9q9v-qgwx-84mr: Command injection in PaddlePaddle
PaddlePaddle before 2.5.0 has a command injection in fs.py. This resulted in the ability to execute arbitrary commands on the operating system.
Command injection in PaddlePaddle
Critical severity GitHub Reviewed Published Jul 26, 2023 to the GitHub Advisory Database • Updated Jul 26, 2023
Related news
CVE-2023-38673: Paddle/security/advisory/pdsa-2023-005.md at develop · PaddlePaddle/Paddle
PaddlePaddle before 2.5.0 has a command injection in fs.py. This resulted in the ability to execute arbitrary commands on the operating system.