← Back to CVE List

CVE-2023-44463

Published: 2023-10-02T20:15Z
Last Modified: 2024-11-21T08:25Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in pretix before 2023.7.1. Incorrect parsing of configuration files causes the application to trust unchecked X-Forwarded-For headers even though it has not been configured to do so. This can lead to IP address spoofing by users of the application. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt