Headline
GHSA-67r3-h899-9w95: Embedded Malicious Code in ctx
The ctx hosted project on PyPI was taken over via user account compromise and replaced with a malicious project which contained runtime code which collected the content of os.environ.items() when instantiating Ctx objects.
Embedded Malicious Code in ctx
Critical severity GitHub Reviewed Published Jun 2, 2022 • Updated Jun 2, 2022