3.8.8
3 years ago
2 days ago
Known vulnerabilities in the viur-core package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
viur-core is a The core component of ViUR, a development framework for Google App Engine Affected versions of this package are vulnerable to Access Control Bypass due to data being inadvertently rendered through the default How to fix Access Control Bypass? Upgrade | [,3.6.0rc1) |
viur-core is a The core component of ViUR, a development framework for Google App Engine Affected versions of this package are vulnerable to Access Restriction Bypass when using custom login handlers users were able to authenticate even when they were disabled by the system. How to fix Access Restriction Bypass? Upgrade | [,3.4.0rc2) |