CVE-2022-32996: Critical severity django navbar client vulnerability
The django-navbar-client package of v0.9.50 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-32996?
CVE-2022-32996 is a serious vulnerability that allows code execution, making it critical for systems using the affected django-navbar-client package.
How do I fix CVE-2022-32996?
To fix CVE-2022-32996, update the django-navbar-client package to a version higher than 1.0.1.
What versions are affected by CVE-2022-32996?
CVE-2022-32996 affects django-navbar-client versions from 0.9.50 to 1.0.1.
What types of sensitive data are at risk with CVE-2022-32996?
CVE-2022-32996 exposes sensitive user information including digital currency keys to attackers.
Can CVE-2022-32996 lead to privilege escalation?
Yes, CVE-2022-32996 can allow attackers to escalate privileges within the system.