msgpack-numpy Hidden pickle.loads() RCE
Security research for huntr. msgpack_numpy.decode() calls pickle.loads() on object dtype arrays. No scanner checks .msgpack files.
Security research for huntr. msgpack_numpy.decode() calls pickle.loads() on object dtype arrays. No scanner checks .msgpack files.