GHSA-v5f6-hjmf-9mc5
LOWCVE-2023-49297Unsafe YAML deserilization will result in arbitrary code execution. A maliciously crafted YAML file can cause arbitrary code execution if PyDrive2 is run in the same directory as it, or if it is loaded in via LoadSettingsFile.
- Affected
- < 1.16.2, = 1.17.0
- Fixed in
- 1.16.2
- Weakness
- CWE-502
- Published
- 2023-12-05
- Source
- github