Home
HIGH: 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:NDefault status
unknown
Any version
affected
Description
Any unauthenticated attacker can bypass the localhost restrictions posed by the application and utilize this to create arbitrary packages
Problem types
CWE-281 Improper Preservation of Permissions
Product status
Any version
References
github.com/...pyload/security/advisories/GHSA-x698-5hjm-w2m5