Skip to content

Security: Responsible disclosure of a high-severity vulnerability #1818

@redyank

Description

@redyank

Current Behaviour

Hello maintainers,

I am a security researcher (redyank) and I have identified a critical security issue in the current version of ydata-profiling related to how data is rendered in HTML reports.

To follow responsible disclosure practices, I am looking for a private channel to share the full technical details and a Proof of Concept (PoC) script.

Could you please provide a security contact email or enable the "Security" tab in this repository so I can submit the advisory privately?

Best regards,

Expected Behaviour

0

Data Description

0

Code that reproduces the bug

0

pandas-profiling version

0

Dependencies

0

OS

No response

Checklist

  • There is not yet another bug report for this issue in the issue tracker
  • The problem is reproducible from this bug report. This guide can help to craft a minimal bug report.
  • The issue has not been resolved by the entries listed under Common Issues.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions