摘要:
pdoc provides API Documentation for Python Projects. Documentation generated with `pdoc --math` linked to JavaScript files from polyfill.io. The polyfill.io CDN has been sold and now serves malicious code. This issue has been fixed in pdoc 14.5.1.
安全等级: Low
公告ID: KylinSec-SA-2024-2930
发布日期: 2024年6月28日
关联CVE: CVE-2024-38526
pdoc provides API Documentation for Python Projects. Documentation generated with `pdoc --math` linked to JavaScript files from polyfill.io. The polyfill.io CDN has been sold and now serves malicious code. This issue has been fixed in pdoc 14.5.1.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2024-38526 | KY3.4-5A | pdoc | Unaffected |
CVE-2024-38526 | KY3.5.2 | pdoc | Unaffected |
CVE-2024-38526 | V6 | pdoc | Unaffected |