Vulnerabilities > Embedchain

DATE CVE VULNERABILITY TITLE RISK
2024-01-21 CVE-2024-23731 Argument Injection or Modification vulnerability in Embedchain
The OpenAPI loader in Embedchain before 0.1.57 allows attackers to execute arbitrary code, related to the openapi.py yaml.load function argument.
network
low complexity
embedchain CWE-88
critical
9.8
2024-01-21 CVE-2024-23732 Unspecified vulnerability in Embedchain
The JSON loader in Embedchain before 0.1.57 allows a ReDoS (regular expression denial of service) via a long string to json.py.
network
low complexity
embedchain
7.5