Click Project maintains a command-line interface and utility library framework used in application development, with a narrow but durable vulnerability profile centered on its core Click product. The observed disclosures reflect the parsing and argument-handling demands of a widely embedded CLI framework; current exposure counts and severity distribution are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Click Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-8768CRITICAL click/install.py in click does not require files in package filesystem tarballs to start with ./ (dot slash), which allows remote attackers to install an alternate security policy | Feb 13, 2017 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Click Project.
Media articles that mention a CVE ID that affects a product developed by Click Project — matched by CVE ID, not by vendor name.