QID 980409
QID 980409: Python (pip) Security Update for django-unicorn (GHSA-ggmv-6q9p-9gm6)
The Unicorn framework before 0.36.1 for Django allows XSS via a component. NOTE: this issue exists because of an incomplete fix for CVE-2021-42053.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-ggmv-6q9p-9gm6 for updates pertaining to this vulnerability.
Vendor References
- GHSA-ggmv-6q9p-9gm6 -
github.com/advisories/GHSA-ggmv-6q9p-9gm6
CVEs related to QID 980409
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-ggmv-6q9p-9gm6 | django-unicorn |
|