VDB
Sign up
CRITICAL9.8

PYSEC-2026-351

H2O Deserialization of Untrusted Data Vulnerability

Quick fix

PYSEC-2026-351 — h2o: upgrade to the fixed version with the command below.

pip install --upgrade 'h2o>=3.46.0.6'

Details

A vulnerability in the h2oai/h2o-3 REST API versions 3.46.0.4 allows unauthenticated remote attackers to execute arbitrary code via deserialization of untrusted data. The vulnerability exists in the endpoints POST /99/ImportSQLTable and POST /3/SaveToHiveTable, where user-controlled JDBC URLs are passed to DriverManager.getConnection, leading to deserialization if a MySQL or PostgreSQL driver is available in the classpath. This issue is fixed in version 3.46.0.6.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/h2o
Introduced in: 0Fixed in: 3.46.0.6
Fixpip install --upgrade 'h2o>=3.46.0.6'

References