Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3807
  • PyPI/asteval
asteval has a Sandbox Escape via BaseException Subclasses 10 Sep
  • Fix available
  • Severity - 5.0 (Medium)
GHSA-89v8-rhwq-hf77
  • PyPI/asteval
asteval has a Sandbox Escape via BaseException Subclasses 20 Aug
  • Fix available
  • Severity - 5.0 (Medium)
GHSA-9w56-46f6-3qhx
  • PyPI/asteval
asteval Sandbox Escape: arbitrary native memory read/write via numpy ctypes in default asteval Interpreter 20 Aug
  • Fix available
  • Severity - 5.5 (Medium)
PYSEC-2026-1195
  • PyPI/asteval
ASTEVAL Allows Maliciously Crafted Format Strings to Lead to Sandbox Escape 07 Jul
  • Fix available
  • Severity - 8.4 (High)
GHSA-3wwr-3g9f-9gc7
  • PyPI/asteval
ASTEVAL Allows Maliciously Crafted Format Strings to Lead to Sandbox Escape 24 Jan 2025
  • Fix available
  • Severity - 8.4 (High)
GHSA-vp47-9734-prjw
  • PyPI/asteval
ASTEVAL Allows Malicious Tampering of Exposed AST Nodes Leads to Sandbox Escape 23 Jan 2025
  • Fix available
  • Severity - 8.4 (High)