{"id":"CVE-2022-34500","details":"The bin-collect package in PyPI before v0.1 included a code execution backdoor inserted by a third party.","modified":"2026-08-12T03:51:15.533824123Z","published":"2022-07-22T14:17:19Z","database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/34xxx/CVE-2022-34500.json"},"references":[{"type":"WEB","url":"http://pypi.doubanio.com/simple/request"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/34xxx/CVE-2022-34500.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-34500"},{"type":"REPORT","url":"https://github.com/Gmiller290488/bin_collection/issues/1"},{"type":"PACKAGE","url":"https://pypi.org/project/bin-collect/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/gmiller290488/bin_collection","events":[{"introduced":"0"},{"fixed":"6c9278b9cfe1f20edecaef270c8309d828c1d085"}],"database_specific":{"cpe":"cpe:2.3:a:pypi:pypi:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"v0.1"},{"last_affected":"0.1"}],"source":["DESCRIPTION","CPE_RANGE"]}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-34500.json"}}],"schema_version":"1.9.0"}