The d8s-networking for python, as distributed on PyPI,...
Critical severity
Unreviewed
Published
Nov 7, 2022
to the GitHub Advisory Database
•
Updated Jan 29, 2023
Description
Published by the National Vulnerability Database
Nov 7, 2022
Published to the GitHub Advisory Database
Nov 7, 2022
Last updated
Jan 29, 2023
The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-user-agents package. The affected version of d8s-htm is 0.1.0.
References