An issue in Gaberiele Venturi pandasai v.0.8.0 and before allows a remote attacker to execute arbitrary code via a crafted request to the prompt function.
{
"github_reviewed": true,
"severity": "HIGH",
"github_reviewed_at": "2023-08-21T20:46:52Z",
"nvd_published_at": "2023-08-21T17:15:48Z",
"cwe_ids": [
"CWE-94"
]
}