VDB
GCVE-110-PYPI-2026-015842
GCVE-110-PYPI-2026-015842
Advisory Published
[P-CURL-PIPE] curl output piped to shell (download-and-execute) — matched: print(" curl -LsSf https://raw.githubusercontent.com/NVIDIA/OpenShell/main/install.sh | sh", file=sys.stderr)
Weaknesses (CWE)
CWE-506Embedded Malicious CodeCWE-522Insufficiently Protected Credentials
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| pypi | tappass | 0.12.8 (affected) | — |
Browse GCVE Records
2,661 records in the GCVE database · Updated September 7, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.