In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Improper Neutralization of Data within XPath Expressions ('XPath Injection') vulnerabilities in an interactive lesson.
Start learningUpgrade smolagents to version 1.22.0 or higher.
smolagents is a 🤗 smolagents: a barebones library for agents. Agents write python code to call tools or orchestrate other agents.
Affected versions of this package are vulnerable to Improper Neutralization of Data within XPath Expressions ('XPath Injection') via the search_item_ctrl_f() function due to the lack of user-supplied text escaping. An attacker could find out how the XML data is structured, or access data that they may not have access to.