VDB

GCVE-110-PYPI-2026-015842

GCVE-110-PYPI-2026-015842
Advisory Published
Vulnetix · Advisory published August 19, 2026
[P-CURL-PIPE] curl output piped to shell (download-and-execute) — matched: print(" curl -LsSf https://raw.githubusercontent.com/NVIDIA/OpenShell/main/install.sh | sh", file=sys.stderr)

Weaknesses (CWE)

CWE-506Embedded Malicious CodeCWE-522Insufficiently Protected Credentials

Affected Products

VendorProductVersionsPlatforms
pypitappass0.12.8 (affected)

References

advisory
web

Browse GCVE Records

2,661 records in the GCVE database · Updated September 7, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›