Skip to content

SNYK finding: Upgrade setuptools to version 78.1.1 or higher #5228

@FuhuXia

Description

@FuhuXia

Please keep any sensitive details in Google Drive.

Date of report: 2025-05-02
Severity: High
Due date: 2025-06-02

Due date is based on severity and described in RA-5. 15-days for Critical, 30-days for High, and 90-days for Moderate and lower.

  • Analysis has been performed and an issue has been linked to address other occurrences for this class of vulnerability* (link)

* When a finding is identified, we create two issues. One to address the specific instance identified in the report. The other is to identify and address all other occurrences of this vulnerability within the application.

Brief description

https://security.snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-9964606

  Upgrade [email protected] to [email protected] to fix
  ✗ Directory Traversal (new) [High Severity][https://security.snyk.io/vuln/SNYK-PYTHON-SETUPTOOLS-9964606] in [email protected]
    introduced by [email protected] and 5 other path(s)

Metadata

Metadata

Assignees

Labels

bugSoftware defect or bugcomplianceRelating to security compliance or documentation

Type

No type

Projects

Status

🗄 Closed

Relationships

None yet

Development

No branches or pull requests

Issue actions