by @pyrox0 Activity log
- Created automatic suggestion
-
@pyrox0
removed
26 packages
- curl-impersonate
- curl-impersonate-ff
- curl-impersonate-chrome
- yubikey-personalization
- yubikey-personalization-gui
- haskellPackages.amazonka-personalize
- python312Packages.onedrive-personal-sdk
- python313Packages.onedrive-personal-sdk
- python314Packages.onedrive-personal-sdk
- python312Packages.mypy-boto3-personalize
- python313Packages.mypy-boto3-personalize
- python314Packages.mypy-boto3-personalize
- haskellPackages.amazonka-personalize-events
- haskellPackages.amazonka-personalize-runtime
- python312Packages.mypy-boto3-personalize-events
- python312Packages.types-aiobotocore-personalize
- python313Packages.mypy-boto3-personalize-events
- python313Packages.types-aiobotocore-personalize
- python314Packages.mypy-boto3-personalize-events
- python312Packages.mypy-boto3-personalize-runtime
- python313Packages.mypy-boto3-personalize-runtime
- python314Packages.mypy-boto3-personalize-runtime
- python312Packages.types-aiobotocore-personalize-events
- python313Packages.types-aiobotocore-personalize-events
- python312Packages.types-aiobotocore-personalize-runtime
- python313Packages.types-aiobotocore-personalize-runtime
- @pyrox0 dismissed
Cross-site request forgery (CSRF) vulnerability in the persona_xsrf_token function in …
Cross-site request forgery (CSRF) vulnerability in the persona_xsrf_token function in persona.module in the Mozilla Persona module 7.x-1.x before 7.x-1.11 for Drupal allows remote attackers to hijack the authentication of aribitrary users via a security token that is not a string data type.
References
- https://drupal.org/node/2059599 x_refsource_MISC
- http://drupalcode.org/project/persona.git/commitdiff/fe0f9bb x_refsource_MISC
- http://www.openwall.com/lists/oss-security/2013/08/10/1 x_refsource_MISC
- https://drupal.org/node/2058655 x_refsource_MISC
- https://drupal.org/node/2059599 x_refsource_MISC x_transferred
- http://drupalcode.org/project/persona.git/commitdiff/fe0f9bb x_refsource_MISC x_transferred
- http://www.openwall.com/lists/oss-security/2013/08/10/1 x_refsource_MISC x_transferred
- https://drupal.org/node/2058655 x_refsource_MISC x_transferred
- https://drupal.org/node/2058655 x_refsource_MISC
- https://drupal.org/node/2059599 x_refsource_MISC
- http://drupalcode.org/project/persona.git/commitdiff/fe0f9bb x_refsource_MISC
- http://www.openwall.com/lists/oss-security/2013/08/10/1 x_refsource_MISC
- https://drupal.org/node/2059599 x_refsource_MISC x_transferred
- http://drupalcode.org/project/persona.git/commitdiff/fe0f9bb x_refsource_MISC x_transferred
- http://www.openwall.com/lists/oss-security/2013/08/10/1 x_refsource_MISC x_transferred
- https://drupal.org/node/2058655 x_refsource_MISC x_transferred
Affected products
- ==7.x-1.x versions prior to 7.x-1.11
Ignored packages (26)
pkgs.curl-impersonate
Special build of curl that can impersonate Chrome & Firefox
pkgs.curl-impersonate-ff
Special build of curl that can impersonate Chrome & Firefox
pkgs.curl-impersonate-chrome
Special build of curl that can impersonate Chrome & Firefox
pkgs.yubikey-personalization
Library and command line tool to personalize YubiKeys
pkgs.yubikey-personalization-gui
QT based cross-platform utility designed to facilitate reconfiguration of the Yubikey
pkgs.haskellPackages.amazonka-personalize
Amazon Personalize SDK
-
nixos-unstable 2.0-unstable-2025-04-16
- nixpkgs-unstable 2.0-unstable-2025-04-16
- nixos-unstable-small 2.0-unstable-2025-04-16
-
nixos-25.11 2.0-unstable-2025-04-16
- nixos-25.11-small 2.0-unstable-2025-04-16
- nixpkgs-25.11-darwin 2.0-unstable-2025-04-16
pkgs.python312Packages.onedrive-personal-sdk
Package to interact with the Microsoft Graph API for personal OneDrives
pkgs.python313Packages.onedrive-personal-sdk
Package to interact with the Microsoft Graph API for personal OneDrives
pkgs.python314Packages.onedrive-personal-sdk
Package to interact with the Microsoft Graph API for personal OneDrives
pkgs.python312Packages.mypy-boto3-personalize
Type annotations for boto3 personalize
-
nixos-25.11 boto3-personalize-1.41.0
- nixos-25.11-small boto3-personalize-1.41.0
- nixpkgs-25.11-darwin boto3-personalize-1.41.0
pkgs.python313Packages.mypy-boto3-personalize
Type annotations for boto3 personalize
-
nixos-unstable boto3-personalize-1.42.3
- nixpkgs-unstable boto3-personalize-1.42.3
- nixos-unstable-small boto3-personalize-1.42.3
-
nixos-25.11 boto3-personalize-1.41.0
- nixos-25.11-small boto3-personalize-1.41.0
- nixpkgs-25.11-darwin boto3-personalize-1.41.0
pkgs.python314Packages.mypy-boto3-personalize
Type annotations for boto3 personalize
-
nixos-unstable boto3-personalize-1.42.3
- nixpkgs-unstable boto3-personalize-1.42.3
- nixos-unstable-small boto3-personalize-1.42.3
pkgs.haskellPackages.amazonka-personalize-events
Amazon Personalize Events SDK
-
nixos-unstable 2.0-unstable-2025-04-16
- nixpkgs-unstable 2.0-unstable-2025-04-16
- nixos-unstable-small 2.0-unstable-2025-04-16
-
nixos-25.11 2.0-unstable-2025-04-16
- nixos-25.11-small 2.0-unstable-2025-04-16
- nixpkgs-25.11-darwin 2.0-unstable-2025-04-16
pkgs.haskellPackages.amazonka-personalize-runtime
Amazon Personalize Runtime SDK
-
nixos-unstable 2.0-unstable-2025-04-16
- nixpkgs-unstable 2.0-unstable-2025-04-16
- nixos-unstable-small 2.0-unstable-2025-04-16
-
nixos-25.11 2.0-unstable-2025-04-16
- nixos-25.11-small 2.0-unstable-2025-04-16
- nixpkgs-25.11-darwin 2.0-unstable-2025-04-16
pkgs.python312Packages.mypy-boto3-personalize-events
Type annotations for boto3 personalize-events
-
nixos-25.11 boto3-personalize-events-1.41.0
- nixos-25.11-small boto3-personalize-events-1.41.0
- nixpkgs-25.11-darwin boto3-personalize-events-1.41.0
pkgs.python312Packages.types-aiobotocore-personalize
Type annotations for aiobotocore personalize
pkgs.python313Packages.mypy-boto3-personalize-events
Type annotations for boto3 personalize-events
-
nixos-unstable boto3-personalize-events-1.42.3
- nixpkgs-unstable boto3-personalize-events-1.42.3
- nixos-unstable-small boto3-personalize-events-1.42.3
-
nixos-25.11 boto3-personalize-events-1.41.0
- nixos-25.11-small boto3-personalize-events-1.41.0
- nixpkgs-25.11-darwin boto3-personalize-events-1.41.0
pkgs.python313Packages.types-aiobotocore-personalize
Type annotations for aiobotocore personalize
pkgs.python314Packages.mypy-boto3-personalize-events
Type annotations for boto3 personalize-events
-
nixos-unstable boto3-personalize-events-1.42.3
- nixpkgs-unstable boto3-personalize-events-1.42.3
- nixos-unstable-small boto3-personalize-events-1.42.3
pkgs.python312Packages.mypy-boto3-personalize-runtime
Type annotations for boto3 personalize-runtime
-
nixos-25.11 boto3-personalize-runtime-1.41.0
- nixos-25.11-small boto3-personalize-runtime-1.41.0
- nixpkgs-25.11-darwin boto3-personalize-runtime-1.41.0
pkgs.python313Packages.mypy-boto3-personalize-runtime
Type annotations for boto3 personalize-runtime
-
nixos-unstable boto3-personalize-runtime-1.42.3
- nixpkgs-unstable boto3-personalize-runtime-1.42.3
- nixos-unstable-small boto3-personalize-runtime-1.42.3
-
nixos-25.11 boto3-personalize-runtime-1.41.0
- nixos-25.11-small boto3-personalize-runtime-1.41.0
- nixpkgs-25.11-darwin boto3-personalize-runtime-1.41.0
pkgs.python314Packages.mypy-boto3-personalize-runtime
Type annotations for boto3 personalize-runtime
-
nixos-unstable boto3-personalize-runtime-1.42.3
- nixpkgs-unstable boto3-personalize-runtime-1.42.3
- nixos-unstable-small boto3-personalize-runtime-1.42.3
pkgs.python312Packages.types-aiobotocore-personalize-events
Type annotations for aiobotocore personalize-events
pkgs.python313Packages.types-aiobotocore-personalize-events
Type annotations for aiobotocore personalize-events
pkgs.python312Packages.types-aiobotocore-personalize-runtime
Type annotations for aiobotocore personalize-runtime