—
PYSEC-2021-341
Details
Incorrect Access Control in Lin-CMS-Flask v0.1.1 allows remote attackers to obtain sensitive information and/or gain privileges due to the application not invalidating a user's authentication token upon logout, which allows for replaying packets.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI / lin-cms
Introduced in:
0 No fixed version published yet for lin-cms (pip). Pin to a known-safe version or switch to an alternative.