Snyk has a proof-of-concept or detailed explanation of how to exploit this vulnerability.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for rembg
.
rembg is a Remove image background
Affected versions of this package are vulnerable to Origin Validation Error in the add_middleware()
function in s_command.py
, which reflects all origins by default. Due to the allow_credentials=True
setting, an attacker can send authenticated cross-site requests and access unintended APIs.