VYPR

Pyspider

by Binux

Source repositories

CVEs (2)

  • CVE-2024-39163HigDec 4, 2024
    risk 0.57cvss 8.8epss 0.00

    binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints.

  • CVE-2024-39162MedNov 29, 2024
    risk 0.40cvss 6.1epss 0.00

    pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer