PyPi: Pylons

PVE-2021-26042

Safety vulnerability ID: 26042

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Apr 14, 2021 Updated at Dec 09, 2022

Advisory

pylons before 0.9.6.1 allows to access private controller methods to be accessed from the…

[This advisory has been limited. Please create a free account to view the full advisory.]

Affected package

pylons

Latest version: 1.0.3

Pylons Web Framework

Affected versions

Fixed versions

Vulnerability changelog

* Fixed validate decorator to resume pre-0.9.6 behavior of only validating POST request…

[This text has been limited. Please create a free account to view the full text.]

Resources