Prayer through 1.3.5 sends a Referer header, containing a user's username, when a user clicks on a link in their email because header.t lacks a no-referrer setting.
{ "binaries": [ { "binary_name": "prayer", "binary_version": "1.3.5-dfsg1-3" }, { "binary_name": "prayer-accountd", "binary_version": "1.3.5-dfsg1-3" }, { "binary_name": "prayer-templates-src", "binary_version": "1.3.5-dfsg1-3" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2018/UBUNTU-CVE-2018-18655.json"
{ "binaries": [ { "binary_name": "prayer", "binary_version": "1.3.5-dfsg1-4build1" }, { "binary_name": "prayer-accountd", "binary_version": "1.3.5-dfsg1-4build1" }, { "binary_name": "prayer-templates-src", "binary_version": "1.3.5-dfsg1-4build1" } ] }
{ "binaries": [ { "binary_name": "prayer", "binary_version": "1.3.5-dfsg1-6.1" }, { "binary_name": "prayer-accountd", "binary_version": "1.3.5-dfsg1-6.1" }, { "binary_name": "prayer-templates-src", "binary_version": "1.3.5-dfsg1-6.1" } ] }
{ "binaries": [ { "binary_name": "prayer", "binary_version": "1.3.5-dfsg1-8build2" }, { "binary_name": "prayer-accountd", "binary_version": "1.3.5-dfsg1-8build2" }, { "binary_name": "prayer-templates-src", "binary_version": "1.3.5-dfsg1-8build2" } ] }