guardrails-ai@0.9.2

Adding guardrails to large language models.

Direct Vulnerabilities

Known vulnerabilities in the guardrails-ai package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Arbitrary Code Injection

guardrails-ai is an Adding guardrails to large language models.

Affected versions of this package are vulnerable to Arbitrary Code Injection via the subprocess.check_output() function. An attacker can execute arbitrary code by publishing a malicious package to the Hub, which is then installed and executed on a victim's system through untrusted manifest data in post_install field.

How to fix Arbitrary Code Injection?

There is no fixed version for guardrails-ai.

[0,)