Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-hm8f-75xx-w2vr
  • PyPI/sigstore
sigstore CSRF possibility in OIDC authentication during signing 26 Jan
  • Fix available
GHSA-hhfg-fwrw-87w7
  • PyPI/sigstore
sigstore has insufficient validation of integration timestamp during verification 11 Dec 2024
  • Fix available
  • Severity - 2.7 (Low)