← Back

Python Book

python_book

Vendor: Timgreen • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Timgreen
1Python Book
Jun 17, 2025
Nov 15, 2024
N/A· v4
7.5 HIGH· v3
N/A· v2
python_book V1.0 is vulnerable to Incorrect Access Control, which allows attackers to obtain sensitive information of users with different IDs by modifying the ID parameter.
1Timgreen
1Python Book
Jun 17, 2025
Nov 15, 2024
N/A· v4
9.8 CRITICAL· v3
N/A· v2
The user avatar upload function in python_book V1.0 has an arbitrary file upload vulnerability.