{ "id": "CVE-2023-39660", "sourceIdentifier": "cve@mitre.org", "published": "2023-08-21T17:15:48.797", "lastModified": "2023-08-21T17:15:48.797", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "An issue in Gaberiele Venturi pandasai v.0.8.0 and before allows a remote attacker to execute arbitrary code via a crafted request to the prompt function." } ], "metrics": {}, "references": [ { "url": "https://github.com/gventuri/pandas-ai/issues/399", "source": "cve@mitre.org" }, { "url": "https://github.com/gventuri/pandas-ai/pull/409", "source": "cve@mitre.org" } ] }