CVE-2021-42053

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in pypi/unicorn

Identifiers

CVE-2021-42053

Package Slug

pypi/unicorn

Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Description

The Unicorn framework for Django allows XSS via component.name.

Affected Versions

All versions before 0.36.0

Solution

Upgrade to version 0.36.0 or above.

Last Modified

2021-10-18

source