Debian Security Advisory 4107-1

Discussion in 'News Aggregator' started by Packet Storm, 9 Feb 2018.

  1. Packet Storm

    Packet Storm Guest

    Debian Linux Security Advisory 4107-1 - It was discovered that the webhook validation of Anymail, a Django email backends for multiple ESPs, is prone to a timing attack. A remote attacker can take advantage of this flaw to obtain a WEBHOOK_AUTHORIZATION secret and post arbitrary email tracking events.

    Continue reading...
     

Share This Page

Loading...