75.8.0
18 years ago
1 months ago
Known vulnerabilities in the setuptools package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
Affected versions of this package are vulnerable to Improper Control of Generation of Code ('Code Injection') through the Note Because How to fix Improper Control of Generation of Code ('Code Injection')? Upgrade | [,70.0.0) |
Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) via crafted HTML package or custom Note: Only a small portion of the user base is impacted by this flaw. Setuptools maintainers pointed out that How to fix Regular Expression Denial of Service (ReDoS)? Upgrade | [,65.5.1) |