IA Squad
SearchPT

vcrpy

python · vcrpyCritical

vcrpy: yaml.Loader allows arbitrary code execution via malicious cassettes

vcrpy uses yaml.Loader/CLoader instead of SafeLoader/CSafeLoader, allowing arbitrary code execution via malicious YAML cassettes.

20 Jun 2026 · act now