The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-utility package. The affected version of d8s-htm is 0.1.0.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
democritus d8s-xml 0.1.0 |