Safety vulnerability ID: 49647
The information on this page was manually curated by our Cybersecurity Intelligence Team.
The Togglee package in PyPI version v0.0.8 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
Latest version: 1.0.48
Simple toggles for python from a url reference
The Togglee package in PyPI version v0.0.8 was discovered to contain a code execution backdoor. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges. See CVE-2022-34060.
MISC:http://pypi.doubanio.com/simple/request: http://pypi.doubanio.com/simple/request
MISC:https://github.com/togglee/togglee-python/issues/2: https://github.com/togglee/togglee-python/issues/2
MISC:https://pypi.org/project/togglee/: https://pypi.org/project/togglee/
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application