Security update for python-Js2Py
This update for python-Js2Py fixes the following issues:
- CVE-2024-28397: Fixed an issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.
(boo#1226660, gh#PiotrDabkowski/Js2Py#323)
-
Submitted by
Daniel Garcia (dgarcia)
Fixed bugs
bnc#1226660
VUL-0: CVE-2024-28397: python-Js2Py: an issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.