VYPR
Critical severity9.8NVD Advisory· Published Nov 4, 2019· Updated Jun 16, 2026

CVE-2013-4409

CVE-2013-4409

Description

An eval() vulnerability exists in Python Software Foundation Djblets 0.7.21 and Beanbag Review Board before 1.7.15 when parsing JSON requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
djbletsPyPI
< 0.6.300.6.30
djbletsPyPI
>= 0.7.0, < 0.7.190.7.19
ReviewBoardPyPI
< 1.7.151.7.15

Affected products

10
  • cpe:2.3:a:reviewboard:djblets:0.7.21:*:*:*:*:*:*:*
  • cpe:2.3:a:reviewboard:review_board:*:*:*:*:*:*:*:*
    Range: <1.7.15
  • cpe:2.3:o:fedoraproject:fedora:18:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:fedoraproject:fedora:18:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:19:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
  • Python Software Foundation; Beanbag/Djbletsv5
    Range: 0.7.21
  • Python Software Foundation; Beanbag/Review Boardv5
    Range: before 1.7.15
  • ghsa-coords2 versions
    < 0.6.30+ 1 more
    • (no CPE)range: < 0.6.30
    • (no CPE)range: < 1.7.15

Patches

Vulnerability mechanics

References

16

News mentions

0

No linked articles in our index yet.