The version of Python that is installed with Sync doesn't auto update. Concerned about security vulnerability.
Python 2.7 and 3 are both supported releases. Python 2.7 will be supported through 2020.
We review and update our python version periodically through Sync auto-update. We currently use python 2.7.9 with Box Sync. We plan to update to the latest version (2.7.11+).
We only install Python to Box specific location on Windows (%ProgramFiles%\Box\Box Sync) and Mac (inside Box Sync.app bundle). Other applications will not use our python installation.
We reviewed the CVE list of Python and there’s no CVE that requires immediate update from 2.7.9.