Safety vulnerability ID: 39164
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Datasette-indieauth before 1.1 trusts the "me" field returned by the authorization server…
[This advisory has been limited. Please create a free account to view the full advisory.]
Latest version: 1.2.2
Datasette authentication using IndieAuth and RelMeAuth
- Fix for critical security issue: [Implementation trusts the "me" field returned by the …
[This text has been limited. Please create a free account to view the full text.]
Create a free account to access detailed CVSS severity scores and full vulnerability advisories
Create free account