Vulnerabilities > Democritus > D8S XML > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-11-07 CVE-2022-44054 Unrestricted Upload of File with Dangerous Type vulnerability in Democritus D8S-Xml 0.1.0
The d8s-xml for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party.
network
low complexity
democritus CWE-434
critical
9.8
2022-10-11 CVE-2022-42043 Unrestricted Upload of File with Dangerous Type vulnerability in Democritus D8S-Xml 0.1.0
The d8s-xml package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party.
network
low complexity
democritus CWE-434
critical
9.8