pydanticc@0.3.0
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 2:37 AM UTC
OSV ID
MAL-2026-13489
Ecosystem
pypi
Summary
pydanticc is a typosquat of the popular 'pydantic' package. Its setup.py defines a custom setuptools install command whose body is stored as a base64 string literal and reconstituted at install time via base64.b64decode + compile + exec, concealing the payload from plain reading of setup.py. On Linux, the decoded hook downloads an opaque executable from https://github.com/totti2188/8gp1Q7iZD3h4VW/releases/download/v1.3A/something (a personal GitHub account unrelated to the package's stated purpose), writes it to /tmp/something, marks it executable, and launches it detached via subprocess.Popen with start_new_session=True. The shipped Python module (djangoo/main.py) contains only a trivial hello() print with no pydantic-related functionality, so the package's real effect on installation is arbitrary remote code execution on the installer's host. The unpinned personal-account release URL, base64/exec obfuscation of the URL and Popen call, detached background execution, name-squat of a top-100 package, and stub content together constitute a classic install-time dropper.
Source: amazon-inspector (0bc3a091548db52bab3bf8556e95780b3041aa971b6353d7f31bdb71128915a1)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.