Security Advisory

CVE-2014-4657

9.8
CRITICAL

Vulnerability Description

The safe_eval function in Ansible before 1.5.4 does not properly restrict the code subset, which allows remote attackers to execute arbitrary code via crafted instructions.
Published Date February 20, 2020
Official Source NIST NVD Advisory