CVE-2024-6507: Deeplake
High severity, CVSS 8.1. EPSS: 1.3% chance of exploitation in the next 30 days.
Command injection when ingesting a remote Kaggle dataset due to a lack of input sanitization in the ingest_kaggle() API
Affected products
- Deeplake Deeplake: up to and including 3.9.10
Published 2024-07-04. Last modified 2026-06-17.