Loading...
Loading...
Trac before 0.10.3.1 does not send a Content-Disposition HTTP header specifying an attachment in certain "unsafe" situations, which has unknown impact and remote attack vectors.
March 10, 2007
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-1406
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.