Update Info

openSUSE-2024-185


Security update for python-Js2Py


Type: security
Severity: important
Issued: 2024-07-04
Description:
This update for python-Js2Py fixes the following issues:

- CVE-2024-28397: Fixed an issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.
  (boo#1226660, gh#PiotrDabkowski/Js2Py#323)


              

Packages


  • python-Js2Py-0.70-bp155.3.3.1