pypa / installer

A low-level library for installing from a Python wheel distribution.
https://installer.readthedocs.io/
MIT License
123 stars 51 forks source link

Security Address #199

Closed SCH227 closed 10 months ago

SCH227 commented 10 months ago

Hello!

I may have found a security issue in latest version of Installer. Following responsible disclosure, is there an email or other private channel where I could share the details? Thank you

pradyunsg commented 10 months ago

This project now has private vulnerability reporting enabled.

Please reach out via the mechanisms described in https://docs.github.com/en/code-security/security-advisories/guidance-on-reporting-and-writing-information-about-vulnerabilities/privately-reporting-a-security-vulnerability#privately-reporting-a-security-vulnerability.