streamlit is vulnerable to Unrestricted Upload of File with Dangerous Type
71
High Risk
Affected versions of this package are vulnerable to Arbitrary File Upload in the file_uploader.py widget, which fails to enforce file type restrictions on the server side. Although file type limitations can be set on the client side, they are not validated on the server, allowing an attacker to bypass restrictions and upload arbitrary files.
You are affected if you are using a version that falls within the vulnerable range.
streamlit is vulnerable to Unrestricted Upload of File with Dangerous Type in versions 0.1 - 1.43.1.
Upgrade the streamlit library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant