漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
geex-arts django-jet OAuth cross-site request forgery
Vulnerability Description
A weakness has been identified in geex-arts django-jet up to 1.0.8. Affected is an unknown function of the component OAuth Handler. Executing a manipulation can lead to cross-site request forgery. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
Geex Arts Django JET 跨站请求伪造漏洞
Vulnerability Description
Geex Arts Django JET是Geex Arts公司开源的一个Web管理后台界面框架组件。 Geex Arts Django JET 1.0.8及之前版本存在安全漏洞,该漏洞源于OAuth Handler组件中未知函数的问题,可能导致远程攻击者进行跨站请求伪造攻击。以下版本受到影响:1.0.0版本、1.0.1版本、1.0.2版本、1.0.3版本、1.0.4版本、1.0.5版本、1.0.6版本、1.0.7版本和1.0.8版本。
CVSS Information
N/A
Vulnerability Type
N/A