24Oca
CVE-2025-24359 | lmfit asteval up to 1.0.5 str format string (GHSA-3wwr-3g9f-9gc7)
A vulnerability was found in lmfit asteval up to 1.0.5 and classified as critical. Affected by this issue is the functionstr
. The manipulation leads to format string.
This vulnerability is handled as CVE-2025-24359. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.