© 2025-2026 PySpect
First version without a known vulnerability: 0.2.0
Apache Arrow: Potential use-after-free when reading IPC file with pre-buffering
Fixed in: 23.0.1
Deserialization of untrusted data in IPC and Parquet readers in the Apache Arrow R package versions 4.0.0 through 16.1.0 allows arbitrary code execution. An application is vulnerable if it
Fixed in: 801de2fbcf5bcbce0c019ed4b35ff3fc863b141b, 17.0.0
PyArrow: Arbitrary code execution when loading a malicious data file
Fixed in: 14.0.1
Missing Initialization of Resource in Apache Arrow
Fixed in: 0.15.1, 0.15.0
Missing Initialization of Resource in Apache Arrow
Fixed in: 0.15.1, 0.15.0