FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-24 03:12:49 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
c3fb48cc-a2ff-11ed-8fbc-6cf0490a8c18Spotipy -- Path traversal vulnerability

Stéphane Bruckert

If a malicious URI is passed to the library, the library can be tricked into performing an operation on a different API endpoint than intended.


Discovery 2023-01-16
Entry 2023-02-02
py37-spotipy
py38-spotipy
py39-spotipy
py310-spotipy
py311-spotipy
le 2.22.0

CVE-2023-23608
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-23608
https://github.com/spotipy-dev/spotipy/security/advisories/GHSA-q764-g6fm-555v