TROYANOSYVIRUS
Back to CVEs

CVE-2026-34444

N/A

Description

Lupa integrates the runtimes of Lua or LuaJIT2 into CPython. In 2.6 and earlier, attribute_filter is not consistently applied when attributes are accessed through built-in functions like getattr and setattr. This allows an attacker to bypass the intended restrictions and eventually achieve arbitrary code execution.

CVE Details

CVSS v3.1 ScoreN/A
Published4/6/2026
Last Modified4/6/2026
Sourcenvd
Honeypot Sightings0

Weaknesses (CWE)

CWE-284CWE-639

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.