Skip to content

Commit

Permalink
security/vuxml: Amend previous commit 3b46eb7
Browse files Browse the repository at this point in the history
Add a missing paragraph, which was not found by "make validate" before
committing.

Fixes:	3b46eb7 security/vuxml: Document www/py-social-auth-app-django vulnerability
  • Loading branch information
knobix committed Apr 28, 2024
1 parent f4bd1ce commit c91e00f
Showing 1 changed file with 1 addition and 0 deletions.
1 change: 1 addition & 0 deletions security/vuxml/vuln/2024.xml
Original file line number Diff line number Diff line change
Expand Up @@ -11,6 +11,7 @@
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<p>GitHub Advisory Database:</p>
<blockquote cite="https://nvd.nist.gov/vuln/detail/CVE-2024-32879">
<p>Python Social Auth is a social authentication/registration mechanism. Prior to version 5.4.1, due to default case-insensitive collation in MySQL or MariaDB databases, third-party authentication user IDs are not case-sensitive and could cause different IDs to match. This issue has been addressed by a fix released in version 5.4.1. An immediate workaround would be to change collation of the affected field.</p>
</blockquote>
Expand Down

0 comments on commit c91e00f

Please sign in to comment.