
A critical RCE vulnerability (CVE-2020-1747) affects `PyYAML` when `yaml.unsafe_load()` processes untrusted input. Update `PyYAML` to 5.3.1+ and use `http://yaml.safe_load()` for external data. #PyYAML #RCE #infosec https://www.pulsepatch.io/posts/cve-2020-1747-pyyaml-arbitrary-code-execution
Post summary
The post highlights CVE-2020-1747, a critical remote code execution flaw in PyYAML’s unsafe_load, and tells users to update to 5.3.1+ and switch to safe_load for protection.
