{"data":{"id":"eccef2eb-baee-4907-9126-112e47bba628","title":"GHSA-2xxc-73fv-36f7: llama-index vulnerable to arbitrary code execution","summary":"An issue in llama_index v0.7.13 and earlier lets a remote attacker execute arbitrary code through the `exec` parameter in the PandasQueryEngine function. The source describes the flaw and its impact but gives no further detail on exploitation conditions.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://github.com/advisories/GHSA-2xxc-73fv-36f7","publishedAt":"2023-08-15T18:31:32.000Z","cveId":"CVE-2023-39662","cweIds":["CWE-74","CWE-94"],"cvssScore":"9.8","cvssSeverity":"critical","severity":"critical","attackType":["other"],"issueType":"vulnerability","affectedPackages":["llama-index@< 0.9.14 (fixed: 0.9.14)"],"affectedPackageNames":["llama-index"],"affectedPackageRefs":["pypi:llama-index"],"affectedVendors":["LangChain"],"affectedVendorsRaw":["llama-index","LlamaIndex","PandasQueryEngine"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"network","attackComplexity":"low","privilegesRequired":"none","userInteraction":"none","exploitMaturity":"unknown","epssScore":0.01492,"epssCheckedAt":"2026-10-10T04:57:05.863Z","kevDateAdded":null,"advisoryAliases":["GHSA-2xxc-73fv-36f7"],"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":true,"disclosureDate":"2023-08-15T18:31:32.000Z","capecIds":["CAPEC-242"],"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"framework","llmSpecific":false,"classifierConfidence":0.95,"researchCategory":null,"atlasIds":null}}