VYPR
Unrated severityNVD Advisory· Published Apr 20, 2020· Updated Aug 4, 2024

CVE-2020-11944

CVE-2020-11944

Description

Abe (aka bitcoin-abe) through 0.7.2, and 0.8pre, allows XSS in __call__ in abe.py because the PATH_INFO environment variable is mishandled during a PageNotFound exception.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.