python jw-util CVE-2020-13388 is a vulnerability in Python Jw Util
Published on May 22, 2020

An exploitable vulnerability exists in the configuration-loading functionality of the jw.util package before 2.3 for Python. When loading a configuration with FromString or FromStream with YAML, one can execute arbitrary Python code, resulting in OS command execution, because safe_load is not used.

NVD


Products Associated with CVE-2020-13388

Want to know whenever a new CVE is published for Python Jw Util? stack.watch will email you.

 

Exploit Probability

EPSS
2.32%
Percentile
84.57%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.