Safety vulnerability ID: 51414
The information on this page was manually curated by our Cybersecurity Intelligence Team.
D8s-file-system 0.1.0 is vulnerable to CVE-2022-42041: It included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-hashes package.
Latest version: 0.10.0
Democritus functions for working with files and directories.
The d8s-file-system package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-hashes package. The affected version is 0.1.0. See CVE-2022-42041.
MISC:https://github.com/dadadadada111/info/issues/2: https://github.com/dadadadada111/info/issues/2
MISC:https://pypi.org/project/d8s-file-system/: https://pypi.org/project/d8s-file-system/
MISC:https://pypi.org/project/democritus-hashes/: https://pypi.org/project/democritus-hashes/
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application