—
PYSEC-2020-226
Details
Cross Site Scripting (XSS) vulnerability in Arachnys Cabot 0.11.12 can be exploited via the Address column.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/cabot
Introduced in:
0No fixed version published yet for cabot (pip). Pin to a known-safe version or switch to an alternative.
References
- https://itsmeanonartist.tech/blogs/blog2.html[ARTICLE]
- https://www.exploit-db.com/exploits/48791[WEB]
- https://www.exploitalert.com/view-details.html?id=36106[WEB]
- https://packetstormsecurity.com/files/159070/Cabot-0.11.12-Cross-Site-Scripting.html[WEB]
- https://github.com/advisories/GHSA-8q2h-4mq6-396j[ADVISORY]