Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-29589: Release Crypt Server 3.3.0 · grahamgilbert/Crypt-Server

Crypt Server before 3.3.0 allows XSS in the index view. This is related to serial, computername, and username.

CVE
#xss#vulnerability#git

Compare

Choose a tag to compare

Crypt Server 3.3.0

Latest

Latest

grahamgilbert released this

3.3.0

3e4b53f

This commit was created on GitHub.com and signed with GitHub’s verified signature.

GPG key ID: 4AEE18F83AFDEB23 Learn about vigilant mode.

Compare

Choose a tag to compare

What’s Changed

  • Fixes a potential XSS vulnerability in the index view by @grahamgilbert in #109
  • Bump django from 2.2.24 to 2.2.27 in /setup by @dependabot in #106
  • Add missing pytz import for timezone support to work by @fortiko in #107
  • Update base image and squash migrations by @grahamgilbert in #110

New Contributors

  • @fortiko made their first contribution in #107

Full Changelog: 3.2.0…3.3.0

Contributors

grahamgilbert, dependabot, and fortiko

Assets2

  • Source code (zip)
  • Source code (tar.gz)

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907