Severity: Critical
CVSS Score: 9.8
marcador package in PyPI 0.1 through 0.13 included a code-execution backdoor.