PT-2026-99484 · Heym · Heym

·

CVE-2026-100864

·

Published

2026-09-27

·

Updated

2026-09-27

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions heym versions prior to 0.0.91
Description A sandbox escape exists in the expression engine's DotList map/filter and fallback resolver. Authenticated users can execute arbitrary Python code by crafting workflow expressions that utilize dunder attribute access through item expressions or the fallback resolver to access os.system and execute commands as the backend process.
Recommendations Update heym to version 0.0.91 or later.

Exploit

Fix

RCE

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-100864
GHSA-87X2-9JWX-7GH4

Affected Products

Heym