FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

py-WsgiDAV -- XSS vulnerability

Affected packages
py310-WsgiDAV < 4.1.0
py311-WsgiDAV < 4.1.0
py37-WsgiDAV < 4.1.0
py38-WsgiDAV < 4.1.0
py39-WsgiDAV < 4.1.0

Details

VuXML ID 1a15b928-5011-4953-8133-d49e24902fe1
Discovery 2022-11-11
Entry 2023-08-31

Implementations using this library with directory browsing enabled may be susceptible to Cross Site Scripting (XSS) attacks.

References

CVE Name CVE-2022-41905
URL https://osv.dev/vulnerability/GHSA-xx6g-jj35-pxjv