django-allauth 在 65.19.4 版本之前存在一个安全漏洞,该漏洞缺乏对失败登录尝试次数的预期限制。在某些常见配置下,攻击者可以利用对变音符号(例如重音符号)的处理方式,从而绕过失败登录次数的限制,获得更高的有效尝试次数。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| allauth | django-allauth | 0.25.0 ~ 65.19.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet