Safety vulnerability ID: 42268
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Pypiserver 1.2.6 includes a fix for CVE-2019-6802: CRLF Injection in pypiserver 1.2.5 and below allows attackers to set arbitrary HTTP headers and possibly conduct XSS attacks via a %0d%0a in a URI.
https://github.com/pypiserver/pypiserver/commit/1375a67c55a9b8d4619df30d2a1c0b239d7357e6
Latest version: 2.3.2
A minimal PyPI server for use with pip/easy_install.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application