Safety vulnerability ID: 34879
The information on this page was manually curated by our Cybersecurity Intelligence Team.
FedMsg 0.18.1 and older is vulnerable to a message validation flaw resulting in message validation not being enabled if configured to be on.
Latest version: 1.1.7
Fedora Messaging Client API
======
This is a security release which addresses CVE-2017-1000001.
Bug fixes
---------
* Fixes an issue in the validation logic of the base consumer which caused
child consumers to not validate the authenticity of messages
(`5c21cf88a <https://github.com/fedora-infra/fedmsg/commit/5c21cf88a>`_).
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application