Security Advisory
CVE-2022-32998
9.8
CRITICAL
Vulnerability Description
The cryptoasset-data-downloader package in PyPI v1.0.0 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
Published Date
June 24, 2022
Official Source
NIST NVD Advisory