In agentscope <=v0.0.4, the file agentscope\web\workstation\workflowutils.py has the function iscallable_expression. Within this function, the line result = eval(s) poses a security risk as it can directly execute user-provided commands.
"https://github.com/pypa/advisory-database/blob/main/vulns/agentscope/PYSEC-2024-262.yaml"