CVE-2023-38941: EHCO1996 Django-Sspanel

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

django-sspanel v2022.2.2 was discovered to contain a remote command execution (RCE) vulnerability via the component sspanel/admin_view.py -> GoodsCreateView._post.

Affected products

  • EHCO1996 Django-Sspanel: version 2022.2.2 only

Published 2023-08-04. Last modified 2026-06-17.