Vulnerabilities > Democritus > D8S Utility > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-10-11 CVE-2022-41386 Unrestricted Upload of File with Dangerous Type vulnerability in Democritus D8S-Utility 0.1.0
The d8s-utility package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party.
network
low complexity
democritus CWE-434
critical
9.8
2022-10-11 CVE-2022-41381 Unrestricted Upload of File with Dangerous Type vulnerability in Democritus D8S-Utility 0.1.0
The d8s-utility package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party.
network
low complexity
democritus CWE-434
critical
9.8