CVE-2024-8953

9.8CRITICAL

In composiohq/composio version 0.4.3, the mathematical_calculator endpoint uses the unsafe eval() function to perform mathematical operations. This can lead to arbitrary code execution if untrusted in

Publicado: 3/20/2025Atualizado: 4/1/2025

Descrição

In composiohq/composio version 0.4.3, the mathematical_calculator endpoint uses the unsafe eval() function to perform mathematical operations. This can lead to arbitrary code execution if untrusted input is passed to the eval() function.

Análise IADesenvolvido por IA

Produtos Afetados

composiocomposio
0.4.3

Referências