CVE-2026-81096: Python Sandbox Safe Builtins Getattr Setattrcve-2026-81096-python-sandbox-safe-builtins-getattr-setattr
Including 'getattr' or 'setattr' in a whitelist of safe builtins or allowed functions for sandboxed Python execution allows callers to bypass AST-level restrictions and access dangerous attributes or class hierarchies.