CVE-2019-7537

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
21/03/2019
Last modified:
17/06/2026

Description

An issue was discovered in Donfig 0.3.0. There is a vulnerability in the collect_yaml method in config_obj.py. It can execute arbitrary Python commands, resulting in command execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:pytroll:donfig:0.3.0:*:*:*:*:*:*:*