AIKIDO-2024-10154

pdoc is vulnerable to Malicious Code

100

Critical

pdoc

AIKIDO-2024-10154: pdoc is vulnerable to Malicious Code in versions 0.0.1 - 14.5.0.

Malicious Code
Vuln in 0.0.1 - 14.5.0
Fixed in 14.5.1
No CVE available
TL;DR

pdoc used polyfill[.]io in some parts of the documentation front-end, which is known for serving malicious code.

Who does this affect?

You're affected if you use pdoc.

How can it be fixed?

Upgrade to a patch version (version 14.5.1).

Are you
to these issues?
Connect your GitHub, GitLab, Bitbucket or Azure DevOps account to start scanning your repos for free.
Start For Free
Your data won't be shared · Read-only access
Logo
© 2024 Aikido Security BV | BE0792914919
🇪🇺 Grauwpoort 1, 9000 Ghent, Belgium
🇺🇸 95 Third St, 2nd Fl, San Francisco, CA 94103, US