Lucene search

K
osvGoogleOSV:CVE-2019-10135
HistoryJul 11, 2019 - 7:15 p.m.

CVE-2019-10135

2019-07-1119:15:12
Google
osv.dev
3

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.1%

A flaw was found in the yaml.load() function in the osbs-client versions since 0.46 before 0.56.1. Insecure use of the yaml.load() function allowed the user to load any suspicious object for code execution via the parsing of malicious YAML files.

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.1%

Related for OSV:CVE-2019-10135