Filtered by vendor Bitcoin-abe Project
Subscribe
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2020-11944 | 1 Bitcoin-abe Project | 1 Bitcoin-abe | 2024-11-21 | 4.3 MEDIUM | 6.1 MEDIUM |
Abe (aka bitcoin-abe) through 0.7.2, and 0.8pre, allows XSS in __call__ in abe.py because the PATH_INFO environment variable is mishandled during a PageNotFound exception. |