Autobahn|Python before 20.12.3 allows redirect header injection.
References
Link | Resource |
---|---|
https://autobahn.readthedocs.io/en/latest/changelog.html | Release Notes Vendor Advisory |
https://github.com/crossbario/autobahn-python | Product Third Party Advisory |
https://github.com/crossbario/autobahn-python/compare/v20.12.2...v20.12.3 | Patch Third Party Advisory |
https://github.com/crossbario/autobahn-python/pull/1439 | Patch Third Party Advisory |
https://pypi.org/project/autobahn/20.12.3/ | Product Third Party Advisory |
https://autobahn.readthedocs.io/en/latest/changelog.html | Release Notes Vendor Advisory |
https://github.com/crossbario/autobahn-python | Product Third Party Advisory |
https://github.com/crossbario/autobahn-python/compare/v20.12.2...v20.12.3 | Patch Third Party Advisory |
https://github.com/crossbario/autobahn-python/pull/1439 | Patch Third Party Advisory |
https://pypi.org/project/autobahn/20.12.3/ | Product Third Party Advisory |
Configurations
History
21 Nov 2024, 05:27
Type | Values Removed | Values Added |
---|---|---|
References | () https://autobahn.readthedocs.io/en/latest/changelog.html - Release Notes, Vendor Advisory | |
References | () https://github.com/crossbario/autobahn-python - Product, Third Party Advisory | |
References | () https://github.com/crossbario/autobahn-python/compare/v20.12.2...v20.12.3 - Patch, Third Party Advisory | |
References | () https://github.com/crossbario/autobahn-python/pull/1439 - Patch, Third Party Advisory | |
References | () https://pypi.org/project/autobahn/20.12.3/ - Product, Third Party Advisory |
Information
Published : 2020-12-27 00:15
Updated : 2024-11-21 05:27
NVD link : CVE-2020-35678
Mitre link : CVE-2020-35678
CVE.ORG link : CVE-2020-35678
JSON object : View
Products Affected
crossbar
- autobahn
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')