Lucene search

K
osvGoogleOSV:ALSA-2021:4916
HistoryDec 02, 2021 - 3:57 p.m.

Important: mailman:2.1 security update

2021-12-0215:57:01
Google
osv.dev
5
mailman program csrf attack prevention

AI Score

6.8

Confidence

Low

EPSS

0.001

Percentile

44.4%

Mailman is a program used to help manage e-mail discussion lists.

Security Fix(es):

  • mailman: CSRF token bypass allows to perform CSRF attacks and admin takeover (CVE-2021-44227)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.