Diego Cebrián discovered that djoser did not properly handle user authentication. An attacker with valid credentials could possibly use this to bypass authentication checks, such as two-factor authentication, to gain unintended access.
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "2.0.3-1ubuntu0.1~esm1", "binary_name": "python3-djoser" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.1.0-1ubuntu0.22.04.1", "binary_name": "python3-djoser" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.1.0-1ubuntu0.24.10.1", "binary_name": "python3-djoser" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.1.0-1ubuntu0.24.04.1", "binary_name": "python3-djoser" } ] }