MoinMoin before 1.8.7 and 1.9.x before 1.9.2 does not properly sanitize user profiles, which has unspecified impact and attack vectors.
| Score | Percentile |
|---|---|
| 1.05% | 77.51% |
No CVSS scores in this advisory.
| Type | Value |
|---|---|
| GHSA | GHSA-977v-29j9-9rxc ↗ |
| CVE | CVE-2010-0669 ↗ |
Vulnerable version ranges and first patched releases as published by GitHub.
| Ecosystem | Package | Vulnerable range | First patched | Vulnerable functions |
|---|---|---|---|---|
| pip | moin | < 1.8.7 | 1.8.7 | — |
| pip | moin | >= 1.9, < 1.9.2 | 1.9.2 | — |