{"id":"CVE-2026-93349","published":"2026-09-23T17:17:19.653","lastModified":"2026-09-28T15:17:24.560","description":"Frictionless before 5.19.1 contains an OS command injection vulnerability in the explore console command that allows an attacker who supplies a crafted Data Package descriptor to execute arbitrary operating system commands as the user who explores it. Attackers can place shell metacharacters in resource path values within a datapackage.json descriptor, which are passed unsanitized to os.system through a shell, causing arbitrary command execution in the victim's security context when they run the explore command against the untrusted package. This vulnerability was also addressed in version 5.20.0rc2 of the pre-release branch.","cvssScore":8.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","cwes":["CWE-78"],"vendors":[],"products":[],"references":[{"url":"https://github.com/SaiTeja-Erukude/CVE-2026-93349-frictionless-command-injection","tags":[]},{"url":"https://github.com/frictionlessdata/frictionless-py/pull/1820","tags":[]},{"url":"https://github.com/frictionlessdata/frictionless-py/releases/tag/v5.19.1","tags":[]},{"url":"https://github.com/frictionlessdata/frictionless-py/releases/tag/v5.20.0rc2","tags":[]},{"url":"https://www.vulncheck.com/advisories/frictionless-os-command-injection-via-explore-console-command","tags":[]}],"exploitRefs":[{"url":"https://github.com/SaiTeja-Erukude/CVE-2026-93349-frictionless-command-injection","tags":[]},{"url":"https://github.com/frictionlessdata/frictionless-py/pull/1820","tags":[]},{"url":"https://github.com/frictionlessdata/frictionless-py/releases/tag/v5.19.1","tags":[]},{"url":"https://github.com/frictionlessdata/frictionless-py/releases/tag/v5.20.0rc2","tags":[]}],"hasPoc":true,"ai":{"summary":"This vulnerability allows an attacker to inject OS commands, leading to arbitrary command execution as the user running the explore command. It matters because it can be exploited to gain full control over the system.","exploitability":"Exploitation requires an attacker to supply a crafted Data Package descriptor, which is moderately hard due to the need for crafting the payload and placing it in the correct location.","blast_radius":"If exploited, this could result in complete compromise of the system and data, as the commands are executed in the context of the user running the explore command.","remediation":"Upgrade to Frictionless 5.19.1 or later.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","os-command-injection","data-package"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-29T08:56:49.778Z"}}