0.62.0
4 years ago
4 days ago
Known vulnerabilities in the django-unicorn package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
django-unicorn is an A magical full-stack framework for Django. Affected versions of this package are vulnerable to Class Pollution in the Several kinds of undesirable impact have been demonstrated based on the manipulation of other modules by polluting their dependency paths in this way. Impacts include cross-site scripting, denial of service and authentication bypass by overwriting a secret key. How to fix Class Pollution? Upgrade | [,0.62.0) |
django-unicorn is an A magical full-stack framework for Django. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) due to incomplete sanitization. NOTE: this issue exists because of an incomplete fix for CVE-2021-42053. How to fix Cross-site Scripting (XSS)? Upgrade | [,0.36.1) |
django-unicorn is an A magical full-stack framework for Django. Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via How to fix Cross-site Scripting (XSS)? Upgrade | [,0.36.1) |