Security: astral-sh/uv
Security Advisories
View information about security vulnerabilities from this repository's maintainers.
-
Arbitrary file write through entry point namesGHSA-4gg8-gxpx-9rph published
May 18, 2026 by zaniebModerate -
Abitrary file deletion through RECORD entriesGHSA-pjjw-68hj-v9mw published
Apr 9, 2026 by zaniebLow -
ZIP payload obfuscation through parsing differentialsGHSA-pqhf-p39g-3x64 published
Oct 29, 2025 by woodruffwModerate -
Differential in tar extraction with PAX headersGHSA-w476-p2h3-79g9 published
Oct 21, 2025 by woodruffwLow -
Path traversal in tar extractionGHSA-7j9j-68r2-f35q published
Sep 23, 2025 by woodruffwLow -
ZIP payload obfuscation through parsing differentialsGHSA-8qf3-x8v5-2pj8 published
Aug 7, 2025 by woodruffwModerate