CVE-2024-8953
9.8CRITICALIn composiohq/composio version 0.4.3, the mathematical_calculator endpoint uses the unsafe eval() function to perform mathematical operations. This can lead to arbitrary code execution if untrusted in
Publicado: 3/20/2025Actualizado: 4/1/2025
Descripción
In composiohq/composio version 0.4.3, the mathematical_calculator endpoint uses the unsafe eval() function to perform mathematical operations. This can lead to arbitrary code execution if untrusted input is passed to the eval() function.
Análisis IAImpulsado por IA
Productos Afectados
composiocomposio
0.4.3