CVE-2021-42771 affecting package babel for versions less than 2.9.1-1
Details
Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.