CVE-2018-25111
5.1MEDIUMdjango-helpdesk before 1.0.0 allows Sensitive Data Exposure because of os.umask(0) in models.py.
Опубликовано: 5/31/2025Обновлено: 6/16/2025
Описание
django-helpdesk before 1.0.0 allows Sensitive Data Exposure because of os.umask(0) in models.py.
ИИ-АнализНа базе ИИ
Затронутые продукты
django-helpdesk_projectdjango-helpdesk
Ссылки
- https://github.com/django-helpdesk/django-helpdesk/issues/591Issue Tracking
- https://github.com/django-helpdesk/django-helpdesk/pull/1120ExploitPatchThird Party Advisory
- https://github.com/django-helpdesk/django-helpdesk/releases/tag/v1.0.0Release Notes
- https://github.com/django-helpdesk/django-helpdesk/pull/1120ExploitPatchThird Party Advisory