CVE-2026-35052
EUVD-2026-1941006.04.2026, 18:16
D-Tale is the combination of a Flask back-end and a React front-end to view & analyze Pandas data structures. Prior to 3.22.0, users hosting D-Tale publicly while using a redis or shelf storage layer could be vulnerable to remote code execution allowing attackers to run malicious code on the server. This vulnerability is fixed in 3.22.0.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| man | d-tale | 𝑥 < 3.22.0 |
𝑥
= Vulnerable software versions