Safety vulnerability ID: 36440
The information on this page was manually curated by our Cybersecurity Intelligence Team.
MicroPyramid Django-CRM 0.2 does not use CSRF token for /users/create/, /users/##/edit/, and /accounts/##/delete/ URIs.
Latest version: 0.9.0
An opensourse CRM developed on django framework
MicroPyramid Django-CRM 0.2 allows CSRF for /users/create/, /users/##/edit/, and /accounts/##/delete/ URIs.
MISC:https://github.com/MicroPyramid/Django-CRM/issues/68: https://github.com/MicroPyramid/Django-CRM/issues/68
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application