CVE-2024-29189 | Ansys pyansys-geometry up to 0.3.2/0.4.11 product_instance.py _start_program os command injection (GHSA-38jr-29fh-w9vm / EUVD-2024-0801)
A vulnerability was found in Ansys pyansys-geometry up to 0.3.2/0.4.11. It has been rated as critical. This impacts the function _start_program of the file src/ansys/geometry/core/connection/product_instance.py. The manipulation leads to os command injection.
This vulnerability is referenced as CVE-2024-29189. The attack can only be performed from a local environment. No exploit is available.
Upgrading the affected component is advised.