CVE-2022-32998

The cryptoasset-data-downloader package in PyPI v1.0.0 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:pypi:cryptoasset-data-downloader:*:*:*:*:*:pypi:*:*

Information

Published : 2022-06-24 14:15

Updated : 2022-07-05 13:48


NVD link : CVE-2022-32998

Mitre link : CVE-2022-32998


JSON object : View

Advertisement

dedicated server usa

Products Affected

pypi

  • cryptoasset-data-downloader