In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade RestrictedPython
to version 8.0 or higher.
RestrictedPython is a RestrictedPython is a defined subset of the Python language which allows to provide a program input into a trusted environment.
Affected versions of this package are vulnerable to Access of Resource Using Incompatible Type ('Type Confusion') due to a type confusion bug in the CPython interpreter. An attacker can bypass security restrictions by exploiting the try/except*
clauses. This is only exploitable if the try/except*
feature is used in the code.