← Back to browse · API

CVE-2021-40720

Severity
CRITICAL
CVSS
9.8
EPSS
0.09515
Risk score
42.53
CISA KEV
No
PoC
No
Published
2021-10-15
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2021-0164, GHSA-X23Q-4J9J-9CXW, PYSEC-2021-380
Products
Adobe:Ops-CLI unspecified ≤2.0.4, Adobe:Ops-CLI unspecified ≤None
Sources
euvd EUVD-2021-0164

Description

Ops CLI version 2.0.4 (and earlier) is affected by a Deserialization of Untrusted Data vulnerability to achieve arbitrary code execution when the checkout_repo function is called on a maliciously crafted file. An attacker can leverage this to execute arbitrary code on the victim machine.

References