Lucene search

K
osvGoogleOSV:GHSA-7FC2-RM35-2PP7
HistoryMay 17, 2022 - 12:35 a.m.

IPython vulnerable to cross site request forgery (CSRF)

2022-05-1700:35:13
Google
osv.dev
9
ipython
csrf
vulnerability
rest api
patch

EPSS

0.002

Percentile

57.3%

IPython (Interactive Python) is a command shell. Cross-site request forgery in the REST API is possible in in IPython 2 and 3. Versions 2.4.1 and 3.2.3 contain patches.