Vulnerabilities > CVE-2022-21797

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
joblib-project
fedoraproject
debian
critical

Summary

The package joblib from 0 and before 1.2.0 are vulnerable to Arbitrary Code Execution via the pre_dispatch flag in Parallel() class due to the eval() statement.

Vulnerable Configurations

Part Description Count
Application
Joblib_Project
52
OS
Fedoraproject
2
OS
Debian
1