Command injection in fs.py
CVE-2023-38673
9.8CRITICAL
What is CVE-2023-38673?
PaddlePaddle versions prior to 2.5.0 contain a command injection vulnerability in the fs.py file. This flaw allows attackers to execute arbitrary commands on the underlying operating system, potentially compromising its security and integrity. It is crucial for users to update to the latest version to mitigate this risk. For more details, refer to the official security advisory.
Affected Version(s)
PaddlePaddle 0 < 2.5.0
