Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-76fj-hmj4-2w99

Опубликовано: 09 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

The keep for python, as distributed on PyPI, included a code-execution backdoor inserted by a third party. The current version, without this backdoor, is 1.2.

The keep for python, as distributed on PyPI, included a code-execution backdoor inserted by a third party. The current version, without this backdoor, is 1.2.

EPSS

Процентиль: 81%
0.01548
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 9.8
nvd
больше 3 лет назад

The keep for python, as distributed on PyPI, included a code-execution backdoor inserted by a third party. The current version, without this backdoor, is 1.2.

CVSS3: 9.8
fstec
больше 3 лет назад

Уязвимость пакета keep языка программирования Python, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 81%
0.01548
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-94