VYPR

djangoSIGE

by Thiagopena

CVEs (1)

  • CVE-2026-64821MedJul 21, 2026
    risk 0.00cvss 4.3epss 0.00

    djangoSIGE through 1.10 (commit a6fe7e8) contains a cross-site request forgery vulnerability that allows unauthenticated attackers to cancel sales or purchase orders on behalf of authenticated users by exploiting order-cancellation logic implemented inside HTTP GET method…