← Back to browse · API

CVE-2022-42040

Severity
CRITICAL
CVSS
9.8
EPSS
0.05173
Risk score
41.01
CISA KEV
No
PoC
No
Published
2022-10-11
Modified
2025-05-19
First seen
2026-08-07
Aliases
EUVD-2022-0051, GHSA-R97M-99W6-7WRH, PYSEC-2022-43019, PYSEC-2022-43038
Products
n/a:n/a n/a
Sources
euvd EUVD-2022-0051

Description

The d8s-algorithms package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-dicts package. The affected version is 0.1.0.

References