Incomplete string comparison in the numpy.core component in NumPy1.9.x, which allows attackers to fail the APIs via constructing specific string objects.
"https://github.com/pypa/advisory-database/blob/main/vulns/numpy/PYSEC-2021-855.yaml"