The scu-captcha package in PyPI v0.0.1 to v0.0.4 included a code execution backdoor inserted by a third party.
[ { "events": [ { "introduced": "0.0.1" }, { "last_affected": "0.0.4" } ] } ]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-34983.json"