pyspider
A Powerful Spider System in Python
Activity
- Latest release
- 8y ago
- Total releases
- 17
- Cadence
- ~22 days
- Last 12 months
- 0
Details
- License
- Apache-2.0
- First release
- Nov 24, 2014
| Version | Released | |
|---|---|---|
0.3.10
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.9
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.8
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.7
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.6
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.5
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.4
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.3
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.2
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.1
patch
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0
initial
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0b1
pre
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0a1
pre
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0.dev7
pre
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0.dev6
pre
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0.dev5
pre
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.3.0.dev4
pre
2 CVEs
CVE-2024-39163
PYSEC-2026-1842
GHSA-pqj8-xhcx-prxm
Jul 07, 2026
pyspider Cross-Site Request Forgery (CSRF) via the Flask endpoints
8.8
/ 10
High
Network
Low
None
Required
Unchanged
High
High
High
binux pyspider up to v0.3.10 was discovered to contain a Cross-Site Request Forgery (CSRF) via the Flask endpoints. Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev
CVE-2024-39162
PYSEC-2026-1843
GHSA-x4x5-jx9j-mmv7
Jul 07, 2026
pyspider Cross-site Scripting vulnerability
Low
Network
Low
None
pyspider through 0.3.10 allows /update XSS. NOTE: This vulnerability only affects products that are no longer supported by the maintainer Affected versions
0.3.0
0.3.0.dev4
0.3.0.dev5
0.3.0.dev6
0.3.0.dev7
0.3.0a1
0.3.0b1
0.3.1
0.3.10
0.3.2
0.3.3
0.3.4
+ 5 more Show less
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
References
Updated Jul 07, 2026 · Source: OSV.dev |