Skip to content

Conversation

@saivarun3407
Copy link

@saivarun3407 saivarun3407 commented Feb 7, 2026

Adding MAL-2026-790, a malware advisory for the PyPI package p7zip-full, sourced from OSV.dev and OSS-Foundation's malicious-packages repo. This package exfiltrates host information and overrides install commands.

@github-actions github-actions bot changed the base branch from main to saivarun3407/advisory-improvement-6804 February 7, 2026 07:35
Copy link
Author

@saivarun3407 saivarun3407 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Adding MAL-2026-790, a malware advisory for the PyPI package p7zip-full, sourced from OSV.dev and OSS-Foundation's malicious-packages repo. This package exfiltrates host information and overrides install commands.

@saivarun3407
Copy link
Author

I have only done one improvement, not sure Why this one failed. Can someone please let me know what went wrong. Thank you

@yhidad31
Copy link

Hi @saivarun3407, unfortunately we are not accepting this contribution because it is about an affected product that cannot be found within our supported ecosystems. This is the only repository we could find with a matching name: p7zip-full

Thank you so much for contributing to the GitHub Advisory Database. This database is free, open, and accessible to all, and it's people like you who make it great. Thanks for choosing to help others. We hope you send in more contributions in the future!

@yhidad31 yhidad31 closed this Feb 10, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants