Zapata

vulnerability arbitrary code execution
severity 8.8
language jupyter notebook
registry other

:book: Description

Zapata is a Computational and Mapping Library.This package is vulnerable for arbitaryCodeexecution

https://github.com/CMCC-Foundation/Zapata

:recycle: Steps To Reproduce-:

  1. git clone https://github.com/CMCC-Foundation/Zapata
  2. run as in poc.png poc

:telescope: POC

poc

💥 Impact

Arbitary code execution