Количество 4
Количество 4
CVE-2021-46898
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack.
openSUSE-SU-2024:0017-1
Security update for python-django-grappelli
openSUSE-SU-2023:0384-1
Security update for python-django-grappelli
GHSA-9x43-5qcq-h79q
Django Grappelli Open Redirect vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-46898 views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад | |
openSUSE-SU-2024:0017-1 Security update for python-django-grappelli | 0% Низкий | около 2 лет назад | ||
openSUSE-SU-2023:0384-1 Security update for python-django-grappelli | 0% Низкий | около 2 лет назад | ||
GHSA-9x43-5qcq-h79q Django Grappelli Open Redirect vulnerability | CVSS3: 6.1 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу