OS3 Open Source Supply Chain Security Scanner
os3-security 0.2.0
The OS3 Open Source Supply Chain Security Scanner version 0.2.0 contains a critical Remote Code Execution (RCE) vulnerability in its dependency resolution module. This flaw allows attackers to execute arbitrary code on systems running the scanner, potentially leading to full system compromise. The vulnerability affects organizations relying on OS3 for supply chain security assessments, with no known exploits reported yet but high potential for supply chain attacks.