—PyPI
PYSEC-2026-2615· CVE-2026-32116, GHSA-4g4c-mfqg-pj8rMagic Wormhole: "wormhole receive" allows arbitrary local file overwrite
Modified: 7/13/2026
package
pkg:pypi/magic-wormhole
Magic Wormhole: "wormhole receive" allows arbitrary local file overwrite
Modified: 7/13/2026
Magic Wormhole: receive, with --output pointing at an existing directory can be path-traversed
Modified: 7/13/2026
Magic Wormhole: "wormhole receive" allows arbitrary local file overwrite
Modified: 7/13/2026
Magic Wormhole: receive, with --output pointing at an existing directory can be path-traversed
Modified: 7/13/2026