CVE-2022-40806

Published

Severity

CVSS v3:
9.8 CRITICAL
CVSS v2:
N/A

Description

The d8s-uuids for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-hypothesis package. The affected version is 0.1.0

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:democritus_uuids_project:democritus_uuids:0.1.0:*:*:*:*:python:*:*n/an/a0.1.0

External Links