Security Advisory

CVE-2024-53899

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-11-24 00:00:00
Last updated 2024-11-24 18:25:36
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual environment. Magic template strings are not quoted correctly when replacing. NOTE: this is not the same as CVE-2024-9287.