Advisories for Pypi/Nbgitpuller package

2021

Code Injection

nbgitpuller is a Jupyter server extension to sync a git repository one-way to a local path. Due to unsanitized input, visiting maliciously crafted links could result in arbitrary code execution in the user environment.