Skip to content

Commit 9f9b6df

Browse files
author
github-actions
committed
Analysis
1 parent 9e7e8ef commit 9f9b6df

1 file changed

Lines changed: 2 additions & 1 deletion

File tree

vulns/dagster-ge/PYSEC-2025-102.yaml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -646,14 +646,15 @@ affected:
646646
- 0.29.8
647647
- 0.29.9
648648
- 0.29.10
649+
- 0.29.11
649650
aliases:
650651
- CVE-2025-51481
651652
details: Local File Inclusion in dagster._grpc.impl.get_notebook_data in Dagster 1.10.14
652653
allows attackers with access to the gRPC server to read arbitrary files by supplying
653654
path traversal sequences in the notebook_path field of ExternalNotebookData requests,
654655
bypassing the intended extension-based check.
655656
id: PYSEC-2025-102
656-
modified: '2026-06-18T19:35:32.355142Z'
657+
modified: '2026-06-25T18:02:03.637421Z'
657658
published: '2025-07-22T17:15:33.543Z'
658659
references:
659660
- type: REPORT

0 commit comments

Comments
 (0)