Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
geex-arts django-jet OAuth cross-site request forgery
Vulnerability Description
A weakness has been identified in geex-arts django-jet up to 1.0.8. Affected is an unknown function of the component OAuth Handler. Executing a manipulation can lead to cross-site request forgery. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
Geex Arts Django JET 跨站请求伪造漏洞
Vulnerability Description
Geex Arts Django JET是Geex Arts公司开源的一个Web管理后台界面框架组件。 Geex Arts Django JET 1.0.8及之前版本存在安全漏洞,该漏洞源于OAuth Handler组件中未知函数的问题,可能导致远程攻击者进行跨站请求伪造攻击。以下版本受到影响:1.0.0版本、1.0.1版本、1.0.2版本、1.0.3版本、1.0.4版本、1.0.5版本、1.0.6版本、1.0.7版本和1.0.8版本。
CVSS Information
N/A
Vulnerability Type
N/A