oss-sec mailing list archives

Re: CVE for PyYAML RCE-factory API


From: Seth Arnold <seth.arnold () canonical com>
Date: Tue, 26 Jun 2018 20:31:13 -0700

On Tue, Jun 26, 2018 at 09:18:39PM -0400, Alex Gaynor wrote:
Because of the degree to which this API presented a footgun, I would like
to request a CVE for it.

This makes sense to me. You can make CVE requests on:

https://cveform.mitre.org/

Thanks

Attachment: signature.asc
Description:


Current thread: