pdoc provides API Documentation for Python Projects. Documentation generated with `pdoc --math` linked to JavaScript files from polyfill.io. The polyfill.io CDN has been sold and now serves malicious code. This issue has been fixed in pdoc 14.5.1.
https://www.vicarius.io/vsociety/posts/polyfillio-in-pdoc-cve-2024-38526
https://sansec.io/research/polyfill-supply-chain-attack
https://github.com/mitmproxy/pdoc/security/advisories/GHSA-5vgj-ggm4-fg62