CVE-2026-4500 | bagofwords1 bagofwords up to 0.0.297 code_execution.py generate_df injection (Issue 60 / EUVD-2026-13802)
A vulnerability was found in bagofwords1 bagofwords up to 0.0.297. It has been declared as critical. This impacts the function generate_df of the file backend/app/ai/code_execution/code_execution.py. Such manipulation leads to injection.
This vulnerability is traded as CVE-2026-4500. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.