CVE-2021-23727
Published Dec 29, 2021This affects the package celery before 5.2.2. It by default trusts the messages and metadata stored in backends (result stores). When reading task metadata from the backend, the d…
Vendor/product archive
2 CVEs tagged to celeryproject / celery — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
This affects the package celery before 5.2.2. It by default trusts the messages and metadata stored in backends (result stores). When reading task metadata from the backend, the d…
Celery 2.1 and 2.2 before 2.2.8, 2.3 before 2.3.4, and 2.4 before 2.4.4 changes the effective id but not the real id during processing of the --uid and --gid arguments to celerybe…