Abusing Git branch names to compromise a PyPI package
Abusing Git branch names to compromise a PyPI package
1
comments
I'm kind of shocked something like this could even happen. At the very least it's a lesson in sanitization I suppose.
1 0 Reply