GHSA-c87f-fq5g-63r2
Dashboard / Vulnerabilities / GHSA-c87f-fq5g-63r2
GHSA-c87f-fq5g-63r2
Summary: Cross-site scripting in Unicorn framework
Details: The Unicorn framework through 0.35.3 for Django allows XSS via component.name.
References: https://nvd.nist.gov/vuln/detail/CVE-2021-42053, https://github.com/adamghill/django-unicorn/pull/288, https://github.com/adamghill/django-unicorn/commit/aa5b9835d946bd9893ef02e556859e3ea62cc5e2, https://github.com/adamghill/django-unicorn, https://github.com/adamghill/django-unicorn/compare/0.35.3...0.36.0, https://github.com/advisories/GHSA-c87f-fq5g-63r2, https://github.com/pypa/advisory-database/tree/main/vulns/django-unicorn/PYSEC-2021-357.yaml, http://packetstormsecurity.com/files/164442/django-unicorn-0.35.3-Cross-Site-Scripting.html
Affected packages
Package
Name: django-unicorn
Purl: pkg:pypi/django-unicorn
Affected ranges
Type: ECOSYSTEM
Events:
