Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-53899

virtualenv before 20.26.6 allows command injection through the activation scripts for a virtual environment. Magic template strings are not quoted correctly when replacing. NOTE: this is not the same as CVE-2024-9287.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.0%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2024-53899


Contact Us

Shodan ® - All rights reserved