Reflected cross-site scripting (XSS) In rdiffweb
Description
rdiffweb vulnerable to Improper Cleanup on Thrown Exception rdiffweb prior to version 2.4.8 is vulnerable to Improper Cleanup on Thrown Exception. This could allow an attacker to display a message of their choice onto a web page. Version 2.4.8 contains a fix for this issue.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
pypi | 2.4.8 |
Aliases
1. 2. 3. 4.
References
1. 2. 3.