203
Malicious Plugin in Pidgin (Chat Application)
(pidgin.im)
All about open source! Feel free to ask questions, and share news, and interesting stuff!
Community icon from opensource.org, but we are not affiliated with them.
To be fair, if your app has its own plugin list and installler, its probably going to be vulnerable to download malicious plugins.
I don't know of an in-app plugin installers that actually cryptographically verify signatures on downloads like apt does.