Gerapy · Gerapy · CVE-2021-43857
Name of the Vulnerable Software and Affected Versions:
Gerapy versions prior to 0.9.8
Description:
Gerapy is a distributed crawler management framework. The issue allows for remote code execution. The `project configure` function is affected.
Recommendations:
For Gerapy versions prior to 0.9.8, update to version 0.9.8 by running `pip3 install -U gerapy` to resolve the issue. As a temporary workaround, consider restricting access to the `project configure` function until the update is applied.