Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:21017-1

Опубликовано: 22 июн. 2026
Источник: suse-cvrf

Описание

Security update for python-click

This update for python-click fixes the following issue

  • CVE-2026-7246: Arbitrary command execution via command injection in click.edit() (bsc#1263898).

Список пакетов

openSUSE Leap 16.0
python313-click-8.2.1-160000.3.1

Описание

Pallets Click, versions 8.3.2 and below, contain a command injection vulnerability in the click.edit() function, allowing attackers to pass arbitrary OS commands from an unprivileged account.


Затронутые продукты
openSUSE Leap 16.0:python313-click-8.2.1-160000.3.1

Ссылки