CVE-2026-31225 — The superduper project thru v0.10.0 contains a critical remote code execution vulnerability in its query parsing component. The _parse_op_part() function in query.py uses the unsafe eval() function to — CVE Database · The Intelligence Room