0.0.24
2 years ago
1 days ago
Known vulnerabilities in the picklescan package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
picklescan is a Security scanner detecting Python Pickle files performing suspicious actions Affected versions of this package are vulnerable to Reliance on File Name or Extension of Externally-Supplied File due to insufficient scanning of non-standard pickle file extensions. How to fix Reliance on File Name or Extension of Externally-Supplied File? Upgrade | [,0.0.22) |
picklescan is a Security scanner detecting Python Pickle files performing suspicious actions Affected versions of this package are vulnerable to Incomplete List of Disallowed Inputs which does not include How to fix Incomplete List of Disallowed Inputs? Upgrade | [,0.0.21) |
picklescan is a Security scanner detecting Python Pickle files performing suspicious actions Affected versions of this package are vulnerable to Deserialization of Untrusted Data due to improper argument verification when handling a memo, making it possible to have a different memo and use How to fix Deserialization of Untrusted Data? Upgrade | [,0.0.13) |