CVE-2026-5559

A vulnerability has been found in AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha. The affected element is the function _is_safe_ast of the file sandbox.py of the component AST Validation. Such manipulation leads to improper neutralization of special elements used in a template engine. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Configurations

No configuration.

History

24 Jul 2026, 20:10

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en AntaresMugisho PyBlade 0.1.8-alpha/0.1.9-alpha. El elemento afectado es la función _is_safe_ast del archivo sandbox.py del componente AST Validation. Dicha manipulación conduce a una neutralización incorrecta de elementos especiales utilizados en un motor de plantillas. El ataque puede ser realizado desde remoto. El exploit ha sido divulgado al público y puede ser utilizado. El proyecto fue informado del problema con antelación a través de un informe de incidencias, pero aún no ha respondido.

05 Apr 2026, 11:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-05 11:16

Updated : 2026-07-24 20:10


NVD link : CVE-2026-5559

Mitre link : CVE-2026-5559

CVE.ORG link : CVE-2026-5559


JSON object : View

Products Affected

No product.

CWE
CWE-791

Incomplete Filtering of Special Elements

CWE-1336

Improper Neutralization of Special Elements Used in a Template Engine