Vulnerabilities
Summary — last 7 days
New vulnerabilities2,535▼ 358 vs. last week
Critical / high1,338▲ 66 vs. last week
New active exploitation (KEV)6▼ 6 vs. last week
Unscored (no CVSS)62▼ 466 vs. last week
2 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Modified | Critical (9.8) | 1.3% | — | Democritus D8s-json | 10/11/2022 | 6/17/2026 | The d8s-json package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-file-system package. The affected version is 0.1.0. | |
| Modified | Critical (9.8) | 1.7% | — | D8s-json Project D8s-json | 9/19/2022 | 6/17/2026 | The d8s-json for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-strings package. The affected version is 0.1.0. |