Nancy
Nancy is a lightweight web framework for the .Net platform, inspired by Sinatra. Nancy aim at delivering a low ceremony approach to building light, fast web applications.
Activity
- Latest release
- 7y ago
- Total releases
- 47
- Cadence
- ~34 days
- Last 12 months
- 0
Details
- First release
- Mar 10, 2011
| Version | Released | |
|---|---|---|
2.0.0
major
|
2.0.0
major
Dependencies (7)
|
|
1.4.5
patch
|
1.4.5
patch
|
|
1.4.4
patch
|
1.4.4
patch
|
|
2.0.0-clinteastwood
pre
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
2.0.0-clinteastwood
pre
Dependencies (26)
+ 18 more |
|
2.0.0-barneyrubble
pre
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
2.0.0-barneyrubble
pre
Dependencies (26)
+ 18 more |
|
2.0.0-alpha
pre
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
2.0.0-alpha
pre
|
|
1.4.3
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.4.3
patch
|
|
1.4.2
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.4.2
patch
|
|
1.4.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.4.1
patch
|
|
1.4.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.4.0
minor
|
|
1.3.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.3.0
minor
|
|
1.2.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.2.0
minor
|
|
1.1.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.1.0
minor
|
|
1.0.0
major
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
1.0.0
major
|
|
0.23.2
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.23.2
patch
|
|
0.23.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.23.1
patch
|
|
0.23.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.23.0
minor
|
|
0.22.2
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.22.2
patch
|
|
0.22.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.22.1
patch
|
|
0.22.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.22.0
minor
|
|
0.21.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.21.1
patch
|
|
0.21.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.21.0
minor
|
|
0.20.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.20.0
minor
|
|
0.18.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.18.0
minor
|
|
0.17.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.17.1
patch
|
|
0.17.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.17.0
minor
|
|
0.16.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.16.1
patch
|
|
0.16.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.16.0
minor
|
|
0.15.3
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.15.3
patch
|
|
0.15.2
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.15.2
patch
|
|
0.15.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.15.1
patch
|
|
0.15.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.15.0
minor
|
|
0.14.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.14.1
patch
|
|
0.14.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.14.0
minor
|
|
0.13.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.13.0
minor
|
|
0.12.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.12.1
patch
|
|
0.12.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.12.0
minor
|
|
0.11.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.11.0
minor
|
|
0.10.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.10.0
minor
|
|
0.9.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.9.0
minor
|
|
0.8.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.8.1
patch
|
|
0.8.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.8.0
minor
|
|
0.7.1
patch
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.7.1
patch
|
|
0.7.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.7.0
minor
|
|
0.6.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.6.0
minor
|
|
0.5.0
minor
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.5.0
minor
|
|
0.4.0
initial
1 CVE
CVE-2017-9785
GHSA-mx3q-j2g2-5qxq
May 17, 2022
Deserialization of Untrusted Data in NancyFX Nancy
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
Csrf.cs in NancyFX Nancy before 1.4.4 and 2.x before 2.0-dangermouse has Remote Code Execution via Deserialization of JSON data in a CSRF Cookie. Affected versions
0.10.0
0.11.0
0.12.0
0.12.1
0.13.0
0.14.0
0.14.1
0.15.0
0.15.1
0.15.2
0.15.3
0.16.0
+ 33 more Show less
0.16.1
0.17.0
0.17.1
0.18.0
0.20.0
0.21.0
0.21.1
0.22.0
0.22.1
0.22.2
0.23.0
0.23.1
0.23.2
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.8.1
0.9.0
1.0.0
1.1.0
1.2.0
1.3.0
1.4.0
1.4.1
1.4.2
1.4.3
2.0.0-alpha
2.0.0-barneyrubble
2.0.0-clienteastwood
2.0.0-clinteastwood
Fixed in
1.4.4
2.0.0
References Updated Nov 08, 2023 · Source: OSV.dev |
0.4.0
initial
|