QID 995354
Date Published: 2023-09-22
QID 995354: Python (Pip) Security Update for mailman (GHSA-82rm-28q9-435p)
Cross-site scripting (XSS) vulnerability in options.py for Mailman 2.1 allows remote attackers to inject script or HTML into web pages via the (1) email or (2) language parameters.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-82rm-28q9-435p for updates and patch information.
Vendor References
- GHSA-82rm-28q9-435p -
github.com/advisories/GHSA-82rm-28q9-435p
CVEs related to QID 995354
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-82rm-28q9-435p | mailman |
|