MEDIUM6.3
PYSEC-2026-1844
pyspur Incomplete Filtering of Special Elements allowed by SingleLLMCallNode function
Details
A vulnerability was found in PySpur-Dev pyspur up to 0.1.18. It has been classified as critical. Affected is the function SingleLLMCallNode of the file backend/pyspur/nodes/llm/single_llm_call.py of the component Jinja2 Template Handler. The manipulation of the argument user_message leads to improper neutralization of special elements used in a template engine. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/pyspur
Introduced in:
0No fixed version published yet for pyspur (pip). Pin to a known-safe version or switch to an alternative.
References
- https://nvd.nist.gov/vuln/detail/CVE-2025-6518[ADVISORY]
- https://github.com/PySpur-Dev/pyspur/issues/289[WEB]
- https://github.com/PySpur-Dev/pyspur[PACKAGE]
- https://vuldb.com/?ctiid.313638[WEB]
- https://vuldb.com/?id.313638[WEB]
- https://vuldb.com/?submit.593612[WEB]
- https://pypi.org/project/pyspur[PACKAGE]
- https://github.com/advisories/GHSA-8gff-cf92-72pv[ADVISORY]