Количество 11
Количество 11
BDU:2025-09791
Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес
ROS-20250724-09
Уязвимость python3-urllib3
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.
CVE-2025-50181
urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ...
SUSE-SU-2025:02985-1
Security update for python-urllib3
SUSE-SU-2025:02736-1
Security update for python-urllib3
SUSE-SU-2025:02735-1
Security update for python-urllib3
GHSA-pq67-6m6q-mj2v
urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-09791 Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
ROS-20250724-09 Уязвимость python3-urllib3 | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0. | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0. | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0. | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
CVE-2025-50181 urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ... | CVSS3: 5.3 | 0% Низкий | около 1 года назад | |
SUSE-SU-2025:02985-1 Security update for python-urllib3 | 0% Низкий | 11 месяцев назад | ||
SUSE-SU-2025:02736-1 Security update for python-urllib3 | 0% Низкий | 12 месяцев назад | ||
SUSE-SU-2025:02735-1 Security update for python-urllib3 | 0% Низкий | 12 месяцев назад | ||
GHSA-pq67-6m6q-mj2v urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation | CVSS3: 5.3 | 0% Низкий | около 1 года назад |
Уязвимостей на страницу