Codemers KLIMS 1.6.DEV allows Python code injection. A user can provide Python code as an input value for a parameter or qualifier (such as for sorting), which will get executed on the server side.
2025-04-22T18:16:01.277
2025-04-23T14:08:13.383
Awaiting Analysis
CVSSv3.1: 7.3 (HIGH)
-