pyro4@4.62 vulnerabilities

distributed object middleware for Python (RPC)

Direct Vulnerabilities

Known vulnerabilities in the pyro4 package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Information Exposure

pyro4 is a library that enables you to build applications in which objects can talk to eachother over the network, with minimal programming effort.

Affected versions of this package are vulnerable to Information Exposure. The HMAC encryption key used with the -k command line option was plainly visible.

How to fix Information Exposure?

Upgrade pyro4 to version 4.72 or higher.

[,4.72)