-
-
SEC-131Getting issue details...
STATUS
- Category: Customer Security: medium - high
- Risk: Identity-theft, Phishing, Defacement
- Summary: A bug: in the django-1.11.14 allows an attacker to fool our customers by redirecting them to external/attacker controlled websites
- For unkown reasons did not get merged into release 2.9.0
- Is fixed in development
-
-
SEC-125Getting issue details...
STATUS
- Category: Customer Security: medium- high
- Risk: Session-Highjacking, Stolen Payments, Insecure NETS payment
- Summary: During NETS payment our customers loses his secured cookies when getting redirected
- Fix has been reverted, due to a bug and time constraints
- unfixed/unplanned
General
Content
Integrations