PYSEC-2019-174

See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/django-crm/PYSEC-2019-174.yaml
JSON Data
https://api.test.osv.dev/v1/vulns/PYSEC-2019-174
Aliases
Published
2019-08-27T15:15:00Z
Modified
2023-11-01T04:50:16.167198Z
Summary
[none]
Details

Multiple CSRF issues exist in MicroPyramid Django CRM 0.2.1 via /change-password-by-admin/, /api/settings/add/, /cases/create/, /change-password-by-admin/, /comment/add/, /documents/1/view/, /documents/create/, /opportunities/create/, and /login/.

References

Affected packages

PyPI / django-crm

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0.2.1

Affected versions

0.*
0.2.1
0.3.0
0.4.0
0.5.0
0.6.0
0.7.0
0.8.0
0.9.0

Database specific

source
"https://github.com/pypa/advisory-database/blob/main/vulns/django-crm/PYSEC-2019-174.yaml"