CRITICALPyPI →
Improper Verification of Cryptographic Signature in django-rest-registration
Improper Verification of Cryptographic Signature in django-rest-registration
Affected packages
- django-rest-registration— 0.2.0 → 0.5.0
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://github.com/apragacz/django-rest-registration/security/advisories/GHSA-p3w6-jcg4-52xh
- https://nvd.nist.gov/vuln/detail/CVE-2019-13177
- https://github.com/apragacz/django-rest-registration/commit/26d094fab65ea8c2694fdfb6a3ab95a7808b62d5
- https://github.com/advisories/GHSA-p3w6-jcg4-52xh
- https://github.com/apragacz/django-rest-registration
- https://github.com/apragacz/django-rest-registration/releases/tag/0.5.0
- https://github.com/pypa/advisory-database/tree/main/vulns/django-rest-registration/PYSEC-2019-20.yaml
Structured record: https://osv.dev/vulnerability/GHSA-p3w6-jcg4-52xh
Recommended response stack
Snyk — Scan your dependencies in CI and fix this vulnerability.→Socket — Detect malicious and compromised packages before they ship.→
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta