beets@1.3.3 vulnerabilities
music tagger and library organizer
-
latest version
2.0.0
-
latest non vulnerable version
-
first published
14 years ago
-
latest version published
17 days ago
-
licenses detected
- [0,)
Direct Vulnerabilities
Known vulnerabilities in the beets package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
beets is a media library management system for obsessive music geeks. Affected versions of this package are vulnerable to Arbitrary File Read via the splicing of a string from a URL request into the path to be opened. How to fix Arbitrary File Read? Upgrade |
[,1.6.0)
|