Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-j9gq-w73w-9h6c: pretix potential IP address spoofing vulnerability

An issue was discovered in pretix before 2023.7.1. Incorrect parsing of configuration files causes the application to trust unchecked X-Forwarded-For headers even though it has not been configured to do so. This can lead to IP address spoofing by users of the application.

ghsa
#vulnerability#git

pretix potential IP address spoofing vulnerability

Moderate severity GitHub Reviewed Published Oct 2, 2023 to the GitHub Advisory Database • Updated Oct 4, 2023

ghsa: Latest News

GHSA-x7m9-mv49-fv73: Vaultwarden vulnerable to user impersonation