poetry vulnerability

  1. CVE-2026-34591: Poetry Wheel Path Traversal Lets Crafted Wheels Write Outside Installs

    CVE-2026-34591 is a reminder that the most dangerous software supply chain bugs are not always found in operating systems, browsers, or cloud control planes. This newly disclosed Poetry wheel path traversal vulnerability affects a widely used Python dependency and packaging tool, allowing a...