IT

Tracker / CVE-2021-23338

CVE-2021-23338

Medium 6.6

This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load function.

Affected products and versions

microsoft qlib

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References