VYPR

Pipreqs

by Pipreqs Project

CVEs (1)

  • CVE-2023-31543CriJun 30, 2023
    risk 0.57cvss 9.8epss 0.01

    A dependency confusion in pipreqs v0.3.0 to v0.4.11 allows attackers to execute arbitrary code via uploading a crafted PyPI package to the chosen repository server.