PYSEC-2021-347

See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/simiki/PYSEC-2021-347.yaml
JSON Data
https://api.test.osv.dev/v1/vulns/PYSEC-2021-347
Aliases
Published
2021-08-27T19:15:00Z
Modified
2023-11-01T04:52:12.521098Z
Summary
[none]
Details

Cross Site Scripting (XSS) in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary code via line 54 of the component 'simiki/blob/master/simiki/generators.py'.

References

Affected packages

PyPI / simiki

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.1.0
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.4.0
0.4.1
0.5.0

1.*

1.0.0
1.0.1
1.0.2
1.0.3
1.1
1.2
1.2.1
1.2.2
1.2.3
1.2.4
1.3
1.4
1.4.1
1.5.0-1
1.5.0.post1
1.5.1
1.6.0
1.6.0.1
1.6.2
1.6.2.1
1.6.2.2
1.6.2.3