Executive brief
Incomplete string comparison in the numpy.core component in NumPy1.9.x, which allows attackers to fail the APIs via constructing specific string objects.
Affected products
- PyPI numpy
Junglewise Threat Intelligence
CVE-2021-34141 · Severity: low · CVSS 3.1 · Published 2021-12-17
Vendors: PyPI.
Incomplete string comparison in the numpy.core component in NumPy1.9.x, which allows attackers to fail the APIs via constructing specific string objects.