Big News: Socket raises $60M Series C at a $1B valuation to secure software supply chains for AI-driven development.Announcement
Sign In

mistral-evals

Package Overview
Dependencies
Maintainers
1
Versions
1
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

mistral-evals

Security research - dependency confusion PoC (authorized bug bounty)

pipPyPI
Version
999.0.0
Maintainers
1

Security Research - Dependency Confusion PoC

This package is part of an authorized bug bounty engagement demonstrating a dependency confusion vulnerability affecting Mistral AI.

The real mistral-evals repository exists at https://github.com/mistralai/mistral-evals but was never registered on PyPI, and the mistral-* namespace is not protected by a PyPI Organization.

Contact: tushar637811@gmail.com

This package performs only a DNS callback for proof of execution. No malicious or destructive actions are taken.

FAQs

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts