Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 12

Количество 12

github логотип

GHSA-cf56-g6w6-pqq2

около 2 лет назад

Twisted vulnerable to HTML injection in HTTP redirect body

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2024-41810

около 2 лет назад

Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo` function contains an HTML injection vulnerability. If application code allows an attacker to control the redirect URL this vulnerability may result in Reflected Cross-Site Scripting (XSS) in the redirect response HTML body. This vulnerability is fixed in 24.7.0rc1.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-41810

около 2 лет назад

Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo` function contains an HTML injection vulnerability. If application code allows an attacker to control the redirect URL this vulnerability may result in Reflected Cross-Site Scripting (XSS) in the redirect response HTML body. This vulnerability is fixed in 24.7.0rc1.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2024-41810

около 2 лет назад

Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo` function contains an HTML injection vulnerability. If application code allows an attacker to control the redirect URL this vulnerability may result in Reflected Cross-Site Scripting (XSS) in the redirect response HTML body. This vulnerability is fixed in 24.7.0rc1.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2024-41810

около 2 лет назад

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-41810

около 2 лет назад

Twisted is an event-based framework for internet applications, support ...

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-04172

около 2 лет назад

Уязвимость функции twisted.web.util.redirectTo сетевого фреймворка Twisted, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2880-1

около 2 лет назад

Security update for python-Twisted

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2860-1

около 2 лет назад

Security update for python3-Twisted

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2757-1

около 2 лет назад

Security update for python-Twisted

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2732-1

около 2 лет назад

Security update for python-Twisted

EPSS: Низкий
redos логотип

ROS-20251226-7303

8 месяцев назад

Уязвимость python-twisted

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-cf56-g6w6-pqq2

Twisted vulnerable to HTML injection in HTTP redirect body

CVSS3: 6.1
1%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2024-41810

Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo` function contains an HTML injection vulnerability. If application code allows an attacker to control the redirect URL this vulnerability may result in Reflected Cross-Site Scripting (XSS) in the redirect response HTML body. This vulnerability is fixed in 24.7.0rc1.

CVSS3: 6.1
1%
Низкий
около 2 лет назад
redhat логотип
CVE-2024-41810

Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo` function contains an HTML injection vulnerability. If application code allows an attacker to control the redirect URL this vulnerability may result in Reflected Cross-Site Scripting (XSS) in the redirect response HTML body. This vulnerability is fixed in 24.7.0rc1.

CVSS3: 4.2
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-41810

Twisted is an event-based framework for internet applications, supporting Python 3.6+. The `twisted.web.util.redirectTo` function contains an HTML injection vulnerability. If application code allows an attacker to control the redirect URL this vulnerability may result in Reflected Cross-Site Scripting (XSS) in the redirect response HTML body. This vulnerability is fixed in 24.7.0rc1.

CVSS3: 6.1
1%
Низкий
около 2 лет назад
msrc логотип
CVSS3: 6.1
1%
Низкий
около 2 лет назад
debian логотип
CVE-2024-41810

Twisted is an event-based framework for internet applications, support ...

CVSS3: 6.1
1%
Низкий
около 2 лет назад
fstec логотип
BDU:2025-04172

Уязвимость функции twisted.web.util.redirectTo сетевого фреймворка Twisted, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

CVSS3: 6.1
1%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:2880-1

Security update for python-Twisted

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:2860-1

Security update for python3-Twisted

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:2757-1

Security update for python-Twisted

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:2732-1

Security update for python-Twisted

около 2 лет назад
redos логотип
ROS-20251226-7303

Уязвимость python-twisted

CVSS3: 6.1
1%
Низкий
8 месяцев назад

Уязвимостей на страницу