Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-67r3-h899-9w95: Embedded Malicious Code in ctx

The ctx hosted project on PyPI was taken over via user account compromise and replaced with a malicious project which contained runtime code which collected the content of os.environ.items() when instantiating Ctx objects.

ghsa
#git

Embedded Malicious Code in ctx

Critical severity GitHub Reviewed Published Jun 2, 2022 • Updated Jun 2, 2022

ghsa: Latest News

GHSA-vm62-9jw3-c8w3: Gogs has an argument Injection in the built-in SSH server