PyPI package
simiki
pkg:pypi/simiki
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-19001 | — | < 1.6.2.2 | 1.6.2.2 | Aug 27, 2021 | Command Injection in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary system commands via line 64 of the component 'simiki/blob/master/simiki/config.py'. | ||
| CVE-2020-19000 | — | < 1.6.2.2 | 1.6.2.2 | Aug 27, 2021 | Cross Site Scripting (XSS) in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary code via line 54 of the component 'simiki/blob/master/simiki/generators.py'. |
- CVE-2020-19001Aug 27, 2021affected < 1.6.2.2fixed 1.6.2.2
Command Injection in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary system commands via line 64 of the component 'simiki/blob/master/simiki/config.py'.
- CVE-2020-19000Aug 27, 2021affected < 1.6.2.2fixed 1.6.2.2
Cross Site Scripting (XSS) in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary code via line 54 of the component 'simiki/blob/master/simiki/generators.py'.