pypi package report

Is PyDrive2 safe?

1 known vulnerability, worst severity LOW.

cvss
3.3

how bad it is if exploited, out of 10

epss
0.50%

chance of exploitation in the next 30 days

xyz score
1.7

CyberXYZ composite, out of 10

fig. 01 — GHSA-v5f6-hjmf-9mc5, the advisory selected below

// advisories

GHSA-v5f6-hjmf-9mc5

LOWCVE-2023-49297

Unsafe YAML deserilization will result in arbitrary code execution. A maliciously crafted YAML file can cause arbitrary code execution if PyDrive2 is run in the same directory as it, or if it is loaded in via LoadSettingsFile.

Affected
< 1.16.2, = 1.17.0
Fixed in
1.16.2
Weakness
CWE-502
Published
2023-12-05
Source
github

GHSANVDMITREreferencereferencereferencereferencereference


// ai model usage

No published models are known to use this package.


Checked 2026-09-22 at 00:38 UTC. The most recent advisory here was published 2023-12-05. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is PyDrive2 safe? pypi package security report | CyberXYZ