5.1.0
11 years ago
2 months ago
Known vulnerabilities in the tuf package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
tuf is a secure updater framework for Python. Affected versions of this package are vulnerable to Improper Input Validation by using the function '_verify_root_self_signed()', which would enable a single new root key to satisfy the requirement for new key self-signatures. How to fix Improper Input Validation? Upgrade | [0.14.0,0.16.0) |
tuf is a secure updater framework for Python. Affected versions of this package are vulnerable to Directory Traversal during a call to How to fix Directory Traversal? Upgrade | [,0.19.0) |