Aller au contenu

Fiche vulnérabilité

CVE-2022-44048 : faille critique democritus d8s-urls (CVSS 9.8)

Description

The d8s-urls for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-domains package. The affected version of d8s-htm is 0.1.0.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
7 nov. 2022
Dernière mise à jour
17 juin 2026

Produits concernés

  • democritus d8s-urls

Références

Rechercher une autre vulnérabilité dans la base CVE