Lucene search

K

Yola Security Vulnerabilities

cve
cve

CVE-2018-25056

A vulnerability, which was classified as problematic, was found in yolapi. Affected is the function render_description of the file yolapi/pypi/metadata.py. The manipulation of the argument text leads to cross site scripting. It is possible to launch the attack remotely. The name of the patch is a0f...

6.1CVSS

6AI Score

0.001EPSS

2022-12-28 12:15 PM
28
cve
cve

CVE-2020-7723

All versions of package promisehelpers are vulnerable to Prototype Pollution via the insert function.

9.8CVSS

9.4AI Score

0.007EPSS

2020-09-01 10:15 AM
32