pypi package report

Is com.github.samtools:htsjdk safe?

1 known vulnerability, worst severity HIGH.

cvss
7.3

how bad it is if exploited, out of 10

epss
0.70%

chance of exploitation in the next 30 days

xyz score
3.4

CyberXYZ composite, out of 10

fig. 01 — GHSA-96vh-4rfp-c42c, the advisory selected below

// advisories

GHSA-96vh-4rfp-c42c

HIGHCVE-2022-21126

The package com.github.samtools:htsjdk before 3.0.1 are vulnerable to Creation of Temporary File in Directory with Insecure Permissions due to the createTempDir() function in util/IOUtil.java not checking for the existence of the temporary directory before attempting to create it.

Affected
< 3.0.1
Fixed in
3.0.1
Published
2022-11-29
Source
github

GHSANVDMITREreferencereferencereference


// ai model usage

No published models are known to use this package.


Checked 2026-09-22 at 03:30 UTC. The most recent advisory here was published 2022-11-29. Updated continuously from NVD, GHSA, OSV and CNA feeds.

Think a verdict here is wrong? Tell us — we respond within 2 business days.
Is com.github.samtools:htsjdk safe? pypi package security report | CyberXYZ