Safety vulnerability ID: 63346
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Ethyca-fides 2.23.3 addresses the security vulnerability CVE-2023-47114. This vulnerability allowed for HTML injection that could lead to phishing attacks or malicious JavaScript execution when accessing HTML pages via the file:// protocol.
https://github.com/ethyca/fides/commit/74a095f490ea2f1db8bf18a1605ccbee8846373c.
Latest version: 2.51.1
Open-source ecosystem for data privacy as code.
Release Pull Request
https://github.com/ethyca/fides/pull/4398
What's Changed
* Fix button arrangment and spacing for TCF and non-TCF consent overlay banner and modal by allisonking and Kelsey-Ethyca in https://github.com/ethyca/fides/pull/4391
* Replaced h1 element with div to use exisitng fides styles in consent modal by SteveDMurphy in https://github.com/ethyca/fides/pull/4399
* Fix an HTML Injection vulnerability in DSR Packages by ThomasLaPiana
**Full Changelog**: https://github.com/ethyca/fides/compare/2.23.2...2.23.3
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application