VDB
KO

PYSEC-2008-4

Details

Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / trac
Introduced in: 0 Fixed in: 0.10.5
Fix pip install --upgrade 'trac>=0.10.5'

References