VDB
KO

PYSEC-2020-112

Details

Tendenci 12.0.10 allows unrestricted deserialization in apps\helpdesk\views\staff.py.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / tendenci
Introduced in: 0 Fixed in: 12.0.11
Fix pip install --upgrade 'tendenci>=12.0.11'

References