jcvi@0.7.1 vulnerabilities

Python utility libraries on genome assembly, annotation and comparative genomics

  • latest version

    1.5.7

  • latest non vulnerable version

  • first published

    11 years ago

  • latest version published

    19 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the jcvi package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Arbitrary Code Execution

    jcvi is a Python utility libraries on genome assembly, annotation and comparative genomics

    Affected versions of this package are vulnerable to Arbitrary Code Execution when user input is considered by the application in an unsanitized format and can reach the configuration file.

    How to fix Arbitrary Code Execution?

    Upgrade jcvi to version 1.3.6 or higher.

    [,1.3.6)