1.3.12
12 years ago
3 months ago
Known vulnerabilities in the hyperkitty package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
HyperKitty is an A web interface to access GNU Mailman v3 archives. Affected versions of this package are vulnerable to Information Exposure due to leaking the archiver key via the logging functionality. How to fix Information Exposure? Upgrade | [,1.3.5) |
HyperKitty is an A web interface to access GNU Mailman v3 archives. Affected versions of this package are vulnerable to Timing Attack via the archiver key. Note: This is only exploitable if you an attacker can send a request from an approved IP listed in How to fix Timing Attack? Upgrade | [,1.3.5) |
HyperKitty is an A web interface to access GNU Mailman v3 archives. Affected versions of this package are vulnerable to Information Exposure. In How to fix Information Exposure? Upgrade | [0,1.3.5) |