← volver
CVE-2026-42079

PPTAgent: Arbitrary Code Execution via Python eval() of LLM-Generated Code with Builtins in Scope

CVSS 8.6 HIGHEPSS 0.1%CWE-95
PPTAgent is an agentic framework for reflective PowerPoint generation. Prior to commit 418491a, PPTAgent is vulnerable to arbitrary code execution via Python eval() of LLM-generated code with builtins in scope. This issue has been patched via commit 418491a.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Productos afectados
icip-cas · PPTAgent

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →