1.8.2
7 months ago
2 months ago
Known vulnerabilities in the blackboard-core package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
blackboard-core is an A Python SDK implementing the Blackboard Pattern for LLM-powered multi-agent systems Affected versions of this package are vulnerable to Command Injection due to unsafe host-level execution being reachable without a hard security gate or explicit acknowledgment. An attacker can inject malicious commands into parameters that are passed to the host's operating system, leading to the execution of arbitrary code with the same privileges as the application. How to fix Command Injection? Upgrade | [,1.3.0) |