VYPR

PyPI package

simiki

pkg:pypi/simiki

Vulnerabilities (2)

  • CVE-2020-19001Aug 27, 2021
    affected < 1.6.2.2fixed 1.6.2.2

    Command Injection in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary system commands via line 64 of the component 'simiki/blob/master/simiki/config.py'.

  • CVE-2020-19000Aug 27, 2021
    affected < 1.6.2.2fixed 1.6.2.2

    Cross Site Scripting (XSS) in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary code via line 54 of the component 'simiki/blob/master/simiki/generators.py'.