Safety vulnerability ID: 37160
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Buildbot 1.8.2 and 2.3.1 fix a vulnerability in OAuth where a user-submitted authorization token was used for authentication. See: <https://github.com/buildbot/buildbot/wiki/OAuth-vulnerability-in-using-submitted-authorization-token-for-authentication>.
Latest version: 4.1.0
The Continuous Integration Framework
Bug fixes
---------
- Fix vulnerability in OAuth where user-submitted authorization token was used for authentication
(https://github.com/buildbot/buildbot/wiki/OAuth-vulnerability-in-using-submitted-authorization-token-for-authentication). Thanks to Phillip Kuhrt for reporting it.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application