CVE-2021-3945: Cross-site Scripting (XSS) - Stored in django-helpdesk/django-helpdesk
Published Nov 13, 2021
·Updated
django-helpdesk is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Affected Software
2 affected componentsFixes available
pip/django-helpdesk<=0.3.0
0.3.1
Django-helpdesk Project Django-helpdesk<=0.3.0
Remediation
Event History
Nov 13, 2021
CVE Published
via MITRE·08:25 AM
Data Sourced
via MITRE·08:25 AM
DescriptionSeverityWeakness
Nov 15, 2021
Advisory Published
via GitHub·11:12 PM
Frequently Asked Questions
1
What is the severity of CVE-2021-3945?
CVE-2021-3945 is classified as a medium-severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2021-3945?
To fix CVE-2021-3945, upgrade django-helpdesk to version 0.3.1 or later.
3
Which versions of django-helpdesk are affected by CVE-2021-3945?
Versions of django-helpdesk up to and including 0.3.0 are affected by CVE-2021-3945.
4
What type of vulnerability is CVE-2021-3945?
CVE-2021-3945 is a cross-site scripting (XSS) vulnerability.
5
Where can I find more details about CVE-2021-3945?
Details about CVE-2021-3945 can be found in the official CVE database and security advisories.