CVE-2025-27510 | conda-forge-metadata up to 0.4.1 inclusion of functionality from untrusted control sphere (GHSA-vwfh-m3q7-9jpw)
A vulnerability classified as critical has been found in conda-forge-metadata up to 0.4.1. Affected is an unknown function. The manipulation leads to inclusion of functionality from untrusted control sphere.
This vulnerability is traded as CVE-2025-27510. It is possible to launch the attack remotely. There is no exploit available.