Abusing Git branch names to compromise a PyPI package
Abusing Git branch names to compromise a PyPI package
You're viewing a single thread.
View all comments
1
comments
I'm kind of shocked something like this could even happen. At the very least it's a lesson in sanitization I suppose.
1 0 Reply