Vulnerability Database
Blog
About
GHSA-x9vc-5q77-m7x4
Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2023/01/GHSA-x9vc-5q77-m7x4/GHSA-x9vc-5q77-m7x4.json
Aliases
CVE-2023-0434
Published
2023-01-22T03:30:28Z
Modified
2023-01-31T02:36:12.265904Z
Details
Improper Input Validation in GitHub repository pyload/pyload prior to 0.5.0b3.dev40.
References
https://nvd.nist.gov/vuln/detail/CVE-2023-0434
https://github.com/pyload/pyload/commit/a2b1eb1028f45ac58dea5f58593c1d3db2b4a104
https://github.com/pyload/pyload
https://huntr.dev/bounties/7d9332d8-6997-483b-9fb9-bcf2ae01dad4
Affected packages
PyPI
/
pyload-ng
pyload-ng
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Fixed
0.5.0b3.dev40
Affected versions
0.*
0.5.0a5.dev528
0.5.0a5.dev532
0.5.0a5.dev535
0.5.0a5.dev536
0.5.0a5.dev537
0.5.0a5.dev539
0.5.0a5.dev540
0.5.0a5.dev545
0.5.0a5.dev562
0.5.0a5.dev564
0.5.0a5.dev565
0.5.0a6.dev570
0.5.0a6.dev578
0.5.0a6.dev587
0.5.0a7.dev596
0.5.0a8.dev602
0.5.0a9.dev615
0.5.0a9.dev629
0.5.0a9.dev632
0.5.0a9.dev641
0.5.0a9.dev643
0.5.0a9.dev655
0.5.0a9.dev806
0.5.0b1.dev1
0.5.0b1.dev2
0.5.0b1.dev3
0.5.0b1.dev4
0.5.0b1.dev5
0.5.0b2.dev10
0.5.0b2.dev11
0.5.0b2.dev12
0.5.0b2.dev9
0.5.0b3.dev13
0.5.0b3.dev14
0.5.0b3.dev17
0.5.0b3.dev18
0.5.0b3.dev19
0.5.0b3.dev20
0.5.0b3.dev21
0.5.0b3.dev22
0.5.0b3.dev24
0.5.0b3.dev26
0.5.0b3.dev27
0.5.0b3.dev28
0.5.0b3.dev29
0.5.0b3.dev30
0.5.0b3.dev31
0.5.0b3.dev32
0.5.0b3.dev33
0.5.0b3.dev34
0.5.0b3.dev35
0.5.0b3.dev38
0.5.0b3.dev39
GHSA-x9vc-5q77-m7x4 - OSV