CVE-2022-43303
https://notcve.org/view.php?id=CVE-2022-43303
The d8s-strings for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-uuids package. The affected version of d8s-htm is 0.1.0. Las cadenas d8s para Python, tal como se distribuyen en PyPI, incluían un posible backdoor de ejecución de código insertada por un tercero. Un posible backdoor de ejecución de código insertada por terceros es el paquete democritus-uuids. • https://github.com/dadadadada111/info/issues/8 https://pypi.org/project/d8s-strings https://pypi.org/project/democritus-uuids • CWE-434: Unrestricted Upload of File with Dangerous Type •
CVE-2022-40432
https://notcve.org/view.php?id=CVE-2022-40432
The d8s-strings for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-hypothesis package. The affected version is 0.1.0. d8s-strings para python, tal como es distribuido en PyPI, incluía una potencial puerta trasera de ejecución de código insertada por un tercero. La puerta trasera es el paquete democritus-hypothesis. La versión afectada es 0.1.0 • https://github.com/democritus-project/d8s-strings/issues/21 https://pypi.org/project/d8s-strings https://pypi.org/project/democritus-hypothesis • CWE-434: Unrestricted Upload of File with Dangerous Type •