ansys-geometry-core@0.4.0 vulnerabilities

A python wrapper for Ansys Geometry service

Direct Vulnerabilities

Known vulnerabilities in the ansys-geometry-core package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
OS Command Injection

ansys-geometry-core is an A python wrapper for Ansys Geometry service

Affected versions of this package are vulnerable to OS Command Injection due to the improper handling of user input in the _start_program method. An attacker can execute arbitrary commands on the system by manipulating the input parameters to this method.

How to fix OS Command Injection?

Upgrade ansys-geometry-core to version 0.3.3, 0.4.12 or higher.

[0.3.0,0.3.3) [0.4.0,0.4.12)