unstructured is vulnerable to Exposure of Resource to Wrong Sphere
60
Medium Risk
Affected versions of this package may expose resources to an unintended scope. Specifically, when processing files that support an include functionality, such as rst and org files, an attacker may be able to partition arbitrary local files, incorporating their contents into the processed output. This could lead to unauthorized disclosure of sensitive information or unintended file exposure.
You are affected if you are using a version that falls within the vulnerable range.
unstructured is vulnerable to Exposure of Resource to Wrong Sphere in versions 0.6.12 - 0.16.19.
Upgrade the unstructured library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant