-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The vulnerability stems from missing path validation in the locale handling of Transaction class. The patch adds a check for '/' in locale_str, confirming the flaw existed in _set_locale method. The CVE-2020-15703.patch directly modifies this function in core.py, and the vulnerability description matches this code context.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| aptdaemon | pip | < 1.1.1 | 1.1.1 |
Ongoing coverage of React2Shell