VYPR

Ini

by Lumiverse

Source repositories

CVEs (1)

  • CVE-2020-7788Dec 11, 2020
    risk 0.00cvss epss 0.00

    This affects the package ini before 1.3.6. If an attacker submits a malicious INI file to an application that parses it with ini.parse, they will pollute the prototype on the application. This can be exploited further depending on the context.