CVE-2026-47425 | conda pixi/rattler/rattler-build/py-rattler up to 0.43.1 EntryPoint EntryPoint::FromStr command path traversal

SecurityVulns

A vulnerability was found in conda pixi, rattler, rattler-build and py-rattler up to 0.43.1. It has been rated as critical. The impacted element is the function EntryPoint::FromStr of the component EntryPoint. Performing a manipulation of the argument command results in path traversal.

This vulnerability was named CVE-2026-47425. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More