Lucene search

K
gitlabHttps://gitlab.com/gitlab-org/security-products/gemnasium-dbGITLAB-6C3DA27158D3EE86A8F581FE03872589
HistoryApr 23, 2014 - 12:00 a.m.

Unexpected code execution using reverse()

2014-04-2300:00:00
https://gitlab.com/gitlab-org/security-products/gemnasium-db
gitlab.com
18

EPSS

0.022

Percentile

89.5%

Django incorrectly handle dotted Python paths when using the django.core.urlresolvers.reverse function. An attacker can use this issue to cause Django to import arbitrary modules from the Python path, resulting in possible code execution.