Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2021-40347
Description:An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5. An attacker (logged into any account) can send a crafted POST request to unsubscribe any user from a mailing list, also revealing whether that address was subscribed in the first place.
Test IDs: 1.3.6.1.4.1.25623.1.1.12.2021.5157.1   1.3.6.1.4.1.25623.1.0.704970   1.3.6.1.4.1.25623.1.0.154377  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2021-40347
Debian Security Information: DSA-4970 (Google Search)
https://www.debian.org/security/2021/dsa-4970
https://gitlab.com/mailman/postorius/-/issues/531
https://gitlab.com/mailman/postorius/-/tags
https://phabricator.wikimedia.org/T289798




© 1998-2025 E-Soft Inc. All rights reserved.