VDB
Sign up

package

PyPI/compliance-trestle

pkg:pypi/compliance-trestle

HIGH8.4PyPI
GHSA-r4vp-3vw6-r2x5· CVE-2026-57171

Trestle is vulnerable to arbitrary file write via path traversal in author generate commands (Incomplete fix of CVE-2026-46345)

Modified: 9/24/2026