id: PYSEC-2026-1870 published: "2026-07-07T14:34:40.460948Z" modified: "2026-07-07T17:25:17.296896Z" aliases: - CVE-2024-27320 - GHSA-g2m8-f3x2-qprw summary: Refuel Autolab Eval Injection vulnerability details: An arbitrary code execution vulnerability exists in versions 0.0.8 and newer of the Refuel Autolabel library because of the way its classification tasks handle provided CSV files. If a victim user creates a classification task using a maliciously crafted CSV file containing Python code, the code will be passed to an eval function which executes it. affected: - package: name: refuel-autolabel ecosystem: PyPI purl: pkg:pypi/refuel-autolabel ranges: - type: ECOSYSTEM events: - introduced: 0.0.8 - last_affected: 0.0.16 versions: - 0.0.10 - 0.0.11 - 0.0.12 - 0.0.13 - 0.0.14 - 0.0.15 - 0.0.16 - 0.0.8 - 0.0.9 references: - type: ADVISORY url: https://nvd.nist.gov/vuln/detail/CVE-2024-27320 - type: PACKAGE url: https://github.com/refuel-ai/autolabel - type: WEB url: "https://github.com/refuel-ai/autolabel/blob/v0.0.16/src/autolabel/dataset/validation.py#L57-L79" - type: WEB url: https://hiddenlayer.com/sai-security-advisory/2024-09-autolabel - type: PACKAGE url: https://pypi.org/project/refuel-autolabel - type: ADVISORY url: https://github.com/advisories/GHSA-g2m8-f3x2-qprw severity: - type: CVSS_V3 score: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - type: CVSS_V4 score: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N