CVE-2026-34730
- EPSS 0.01%
- Veröffentlicht 02.04.2026 18:09:16
- Zuletzt bearbeitet 03.04.2026 19:43:42
Copier is a library and CLI app for rendering project templates. Prior to version 9.14.1, Copier's _external_data feature allows a template to load YAML files using template-controlled paths. If untrusted templates are in scope, a malicious template ...
CVE-2026-34726
- EPSS 0.02%
- Veröffentlicht 02.04.2026 18:07:35
- Zuletzt bearbeitet 03.04.2026 19:40:49
Copier is a library and CLI app for rendering project templates. Prior to version 9.14.1, Copier's _subdirectory setting is documented as the subdirectory to use as the template root. However, the current implementation accepts parent-directory trave...
CVE-2026-23986
- EPSS 0.07%
- Veröffentlicht 21.01.2026 22:20:37
- Zuletzt bearbeitet 02.02.2026 14:10:51
Copier is a library and CLI app for rendering project templates. Prior to version 9.11.2, Copier suggests that it's safe to generate a project from a safe template, i.e. one that doesn't use unsafe features like custom Jinja extensions which would re...
CVE-2026-23968
- EPSS 0.04%
- Veröffentlicht 21.01.2026 22:13:25
- Zuletzt bearbeitet 02.02.2026 14:11:03
Copier is a library and CLI app for rendering project templates. Prior to version 9.11.2, Copier suggests that it's safe to generate a project from a safe template, i.e. one that doesn't use unsafe features like custom Jinja extensions which would re...