Dynamo icon indicating copy to clipboard operation
Dynamo copied to clipboard

Python Security Vulnerability CVE-2022-0391

Open brencass opened this issue 2 years ago • 2 comments

I have just become aware of a Security Vulnerability in a Python Library that will need looking at getting implemented into Dynamo's Python Implementation.

Github Advisory: https://github.com/advisories/GHSA-75jm-2xrg-5wpf Python Issue tracking: https://bugs.python.org/issue43882 CPython Github pull Request: https://github.com/python/cpython/pull/25595 CVE Website: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0391

brencass avatar Apr 06 '22 09:04 brencass

FYI @jasonstratton @QilongTang

Amoursol avatar Apr 11 '22 20:04 Amoursol

@brencass thanks for the reminder. The security issue has already been flagged by our internal security system and is being tracked for remediation in a future Dynamo release.

aparajit-pratap avatar Apr 12 '22 17:04 aparajit-pratap