Vulnerability Database
Blog
About
GHSA-6jmx-pv77-wm5w
Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2023/01/GHSA-6jmx-pv77-wm5w/GHSA-6jmx-pv77-wm5w.json
Aliases
CVE-2023-0435
Published
2023-01-23T00:30:26Z
Modified
2023-02-01T09:22:40.715084Z
Details
Excessive Attack Surface in GitHub repository pyload/pyload prior to 0.5.0b3.dev41.
References
https://nvd.nist.gov/vuln/detail/CVE-2023-0435
https://github.com/pyload/pyload/commit/431ea6f0371d748df66b344a05ca1a8e0310cff3
https://github.com/pyload/pyload
https://huntr.dev/bounties/a3e32ad5-caee-4f43-b10a-4a876d4e3f1d
Affected packages
PyPI
/
pyload-ng
pyload-ng
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.5.0b3.dev41
Affected versions
0.*
0.5.0a5.dev528
0.5.0a5.dev532
0.5.0a5.dev535
0.5.0a5.dev536
0.5.0a5.dev537
0.5.0a5.dev539
0.5.0a5.dev540
0.5.0a5.dev545
0.5.0a5.dev562
0.5.0a5.dev564
0.5.0a5.dev565
0.5.0a6.dev570
0.5.0a6.dev578
0.5.0a6.dev587
0.5.0a7.dev596
0.5.0a8.dev602
0.5.0a9.dev615
0.5.0a9.dev629
0.5.0a9.dev632
0.5.0a9.dev641
0.5.0a9.dev643
0.5.0a9.dev655
0.5.0a9.dev806
0.5.0b1.dev1
0.5.0b1.dev2
0.5.0b1.dev3
0.5.0b1.dev4
0.5.0b1.dev5
0.5.0b2.dev10
0.5.0b2.dev11
0.5.0b2.dev12
0.5.0b2.dev9
0.5.0b3.dev13
0.5.0b3.dev14
0.5.0b3.dev17
0.5.0b3.dev18
0.5.0b3.dev19
0.5.0b3.dev20
0.5.0b3.dev21
0.5.0b3.dev22
0.5.0b3.dev24
0.5.0b3.dev26
0.5.0b3.dev27
0.5.0b3.dev28
0.5.0b3.dev29
0.5.0b3.dev30
0.5.0b3.dev31
0.5.0b3.dev32
0.5.0b3.dev33
0.5.0b3.dev34
0.5.0b3.dev35
0.5.0b3.dev38
0.5.0b3.dev39
0.5.0b3.dev40
GHSA-6jmx-pv77-wm5w - OSV