js2py records
1 published records for vendor js2py.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 1 · 100%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
1 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
22Monitor | CVE-2024-28397Weaponized | An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.CWE-94 | Medium5.3 | — | 4.5% | Jun 20, 2024 |
- CVE-2024-2839722Monitor
An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitrary code via a crafted API call.
MediumCVSS 5.3WeaponizedEPSS 5%Jun 20, 2024