VYPR

rpm package

opensuse/python3-mailman&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/python3-mailman&distro=openSUSE%20Tumbleweed

Vulnerabilities (1)

  • CVE-2021-34337Apr 15, 2023
    affected < 3.3.5-1.1fixed 3.3.5-1.1

    An issue was discovered in Mailman Core before 3.3.5. An attacker with access to the REST API could use timing attacks to determine the value of the configured REST API password and then make arbitrary REST API calls. The REST API is bound to localhost by default, limiting the ab