Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-10135
HistoryJul 11, 2019 - 7:15 p.m.

Design/Logic Flaw

2019-07-1119:15:00
PRIOn knowledge base
www.prio-n.com
4

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.1%

A flaw was found in the yaml.load() function in the osbs-client versions since 0.46 before 0.56.1. Insecure use of the yaml.load() function allowed the user to load any suspicious object for code execution via the parsing of malicious YAML files.

CPENameOperatorVersion
osbs-clientge0.46
osbs-clientlt0.56.1

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.1%

Related for PRION:CVE-2019-10135