dropbox / dropbox/hermes

Security vulnerability found

Open
#161 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Python
Stars
48
Forks
11
PR merge metrics
No merged PRs in 30d

Description

Hello!

I'm a Cybersecurity researcher developing Packj [1]. Our tool has detected a supply-chain vulnerability in this repository. In order for me to disclose it, kindly enable GitHub Private vulnerability reporting, which allows security researchers to responsibly disclose a security vulnerability.

Thanks!

Packj detects malicious/"risky" NPM/PyPI/Ruby dependencies: https://github.com/ossillate-inc/packj

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.