VYPR

Simiki

by Simiki Project

CVEs (2)

  • CVE-2020-19001CriAug 27, 2021
    risk 0.57cvss 9.8epss 0.04

    Command Injection in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary system commands via line 64 of the component 'simiki/blob/master/simiki/config.py'.

  • CVE-2020-19000MedAug 27, 2021
    risk 0.40cvss 6.1epss 0.01

    Cross Site Scripting (XSS) in Simiki v1.6.2.1 and prior allows remote attackers to execute arbitrary code via line 54 of the component 'simiki/blob/master/simiki/generators.py'.