docassemble.base@1.4.83 vulnerabilities

The base components of the docassemble system.

Direct Vulnerabilities

Known vulnerabilities in the docassemble.base package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • C
Improper Access Control

docassemble.base is a The base components of the docassemble system.

Affected versions of this package are vulnerable to Improper Access Control due to improper validation of user-supplied input through URL parameters. An attacker can gain unauthorized access to information on the system by manipulating URLs to bypass access controls.

How to fix Improper Access Control?

Upgrade docassemble.base to version 1.4.97 or higher.

[1.4.53,1.4.97)