Hacker News new | ask | show | jobs
by andymcsherry 43 days ago
Andy from Lightning here. Thanks for pointing that out, we are updating the CVE. Only the versions from PyPi were affected. The malicious code was not checked into the GitHub repository