django-helpdesk before 1.0.0 allows Sensitive Data Exposure because of os.umask(0) in models.py.
"https://github.com/pypa/advisory-database/blob/main/vulns/django-helpdesk/PYSEC-2025-44.yaml"