Safety vulnerability ID: 26052
The information on this page was manually curated by our Cybersecurity Intelligence Team.
pyramid-weblayer before 0.12 does not protect AJAX requests through the CSRF machinery.
[This advisory has been limited. Please create a free account to view the full advisory.]
Latest version: 0.14.7
Common / reusable utilities for a Pyramid web application.
Breaking change: update CSRF machinery to also protect AJAX requests, as per [this secur…
[This text has been limited. Please create a free account to view the full text.]