Executive brief
Tendenci 12.0.10 allows unrestricted deserialization in apps\helpdesk\views\staff.py.
Affected products
- PyPI tendenci
Junglewise Threat Intelligence
CVE-2020-14942 · Severity: low · CVSS 3.1 · Published 2020-06-21
Technologies: tendenci (PyPI). Vendors: PyPI.
Tendenci 12.0.10 allows unrestricted deserialization in apps\helpdesk\views\staff.py.