Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2020 | Deseriliazation of untrusted data can occur in versions 3.7.0 or newer of Ydata's ydata-profiling open-source library, enabling a maliciously crafted dataset to run arbitrary code on an end user's system when loaded. |
Github GHSA |
GHSA-cg49-hrj4-3rpr | ydata unsafe deserialization |
| Link | Providers |
|---|---|
| https://hiddenlayer.com/sai-security-advisory/ydata-june2024 |
|
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: HiddenLayer
Published:
Updated: 2024-08-02T03:43:50.922Z
Reserved: 2024-05-31T14:19:09.799Z
Link: CVE-2024-37064
Updated: 2024-08-02T03:43:50.922Z
Status : Deferred
Published: 2024-06-04T12:15:13.313
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-37064
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA