evernote-backup

Install command:
brew install evernote-backup

Backup & export all Evernote notes and notebooks

https://github.com/vzhd1701/evernote-backup

License: MIT

Development: Pull requests

Formula JSON API: /api/formula/evernote-backup.json

Formula code: evernote-backup.rb on GitHub

Bottle (binary package) installation support provided for:

macOS on
Apple Silicon
golden gate ✅
tahoe ✅
sequoia ✅
Linux ARM64 ✅
x86_64 ✅

Current versions:

stable ✅ 1.14.0

Revision: 2

Depends on:

certifi 2026.7.22 Mozilla CA bundle for Python
python@3.14 3.14.8 Interpreted, interactive, object-oriented programming language

Depends on when building from source:

rust 1.99.0 Safe, concurrent, practical language

Binaries: evernote-backup

Known vulnerabilities in the current version:

GHSA-2gx3-rcp4-g85q (medium) PyJWT: PyJWKClient still amplifies unauthenticated JWKS fetches on unknown kid values (incomplete...
GHSA-42vr-xj54-vc7v (medium) PyJWT: Unauthenticated RecursionError DoS in pre-verification payload parse (PyJWKClient.get_sign...
GHSA-8wjv-2p76-3863 (medium) PyJWT: Uncaught RecursionError in jwt.decode() on deeply nested token header
GHSA-9j54-fg26-wv3r (high) PyJWT: PyJWK accepts empty HMAC keys, bypassing PyJWT's empty-key validation
GHSA-9v7f-9g4p-ffgj (high) PyJWT: PyJWKClient follows redirects when fetching JWKS
GHSA-ffc3-869f-jxw9 (critical) PyJWT: Asymmetric-PEM detection bypass: whitespace/line-ending-mutated public keys skip the HS/as...
GHSA-hxm8-2xgr-2p9m (medium) PyJWT: Non-canonical signature segments enable raw-token revocation bypass
GHSA-jwrc-g2q2-pq5p (medium) PyJWT: ReDoS vulnerability when calling the `is_pem_format` function.
GHSA-p4g4-x82p-q773 (high) PyJWT: Public keys in DER form are accepted as HMAC secrets, bypassing the CVE-2022-29217 guard
GHSA-r6x4-923q-g947 (high) PyJWT BOM Bypass
GHSA-w2cx-738m-mc7w (high) PyJWT accepts public JWK containers as HMAC secrets
GHSA-w6j9-cwv2-h6wq (medium) PyJWT: Malformed RSA JWK aborts parsing of an entire JWK Set
GHSA-gvp8-978c-rx2q (medium) PyJWT.decode() reintroduces options-dict mutation, enabling silent claim-verification bypass on d...
GHSA-6pjx-3pjc-mrj8 (high) Apache Thrift Python bindings have an Improper Handling of Highly Compressed Data (Data Amplifica...
GHSA-8wv5-x4w7-5gww (high) Apache Thrift Python, Go, PHP and Java bindings have an Infinite Loop
GHSA-hwrj-9rr4-24xh (medium) Apache Thrift Python bindings have a Improper Validation of Certificate with Host Mismatch vulner...
PYSEC-2026-2132 (high)

Data from Homebrew/advisory-database. Run brew vulns evernote-backup for a live check.

Analytics:

30 days90 days365 days
Installs1054581,930
Installs (--HEAD)011
Installs on Request1054581,930
Installs on Request (--HEAD)011
Build Errors0