yandaozi/PPress

yandaozi/PPress

Releases1
Frequency
Last Release
Stars244
一个基于Python的博客CMS系统,采用Flask极致构建。

CVE History

CVEPublishedCVSS v3CVSS v2
8 HIGH

An issue was discovered in PPress 0.0.9 allowing attackers to gain escilated privlidges via crafted session cookie.

8.8 HIGH

Server-side template injection (SSTI) vulnerability in PPress 0.0.9 allows attackers to execute arbitrary code via crafted themes.