-
-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Labels
bugSomething isn't workingSomething isn't working
Description
We discovered a potential code execution backdoor in version 0.1.0 of the project, the backdoor is the democritus-urls package. Attackers can upload democritus-urls packages containing arbitrary malicious code. For the safety of this project, the democritus-urls package has been uploaded by us.
The democritus-urls package can be successfully installed using pip install d8s-html==0.1.0
Suggestion: remove version 0.1.0 of this project in PyPI
Metadata
Metadata
Assignees
Labels
bugSomething isn't workingSomething isn't working