An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 0.7% on pypi.org
Top 0.2% downloads on pypi.org
Top 0.1% dependent packages on pypi.org
Top 0.1% dependent repos on pypi.org
Top 2.1% forks on pypi.org
Top 0.1% docker downloads on pypi.org

pypi.org : python-socketio

Socket.IO server and client for Python

Registry - Source - Documentation - JSON - codemeta.json
purl: pkg:pypi/python-socketio
Keywords: asyncio , eventlet , gevent , long-polling , low-latency , python , socket-io , socketio , socketio-server , web-server , websocket
License: MIT
Latest release: 7 days ago
First release: over 10 years ago
Dependent packages: 243
Dependent repositories: 7,488
Downloads: 11,325,271 last month
Stars: 3,990 on GitHub
Forks: 586 on GitHub
Docker dependents: 467
Docker downloads: 1,183,045,979
Total Commits: 605
Committers: 73
Average commits per author: 8.288
Development Distribution Score (DDS): 0.388
More commit stats: commits.ecosyste.ms
See more repository details: repos.ecosyste.ms
Funding links: https://github.com/sponsors/miguelgrinberg, https://patreon.com/miguelgrinberg, https://paypal.me/miguelgrinberg
Last synced: about 3 hours ago

Moderate
GSA_kwCzR0hTQS1nOGM2LThmamotMnI0bc4ABNCz
python-socketio vulnerable to arbitrary Python code execution (RCE) through malicious pickle deserialization in certain multi-server deployments
Ecosystems: pypi
Packages: python-socketio
Source: github
Published: 3 months ago