Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

fstec логотип

BDU:2025-09791

около 1 года назад

Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20250724-09

около 1 года назад

Уязвимость python3-urllib3

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-50181

около 1 года назад

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-50181

около 1 года назад

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-50181

около 1 года назад

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2025-50181

около 1 года назад

urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-50181

около 1 года назад

urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02985-1

11 месяцев назад

Security update for python-urllib3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02736-1

12 месяцев назад

Security update for python-urllib3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02735-1

12 месяцев назад

Security update for python-urllib3

EPSS: Низкий
github логотип

GHSA-pq67-6m6q-mj2v

около 1 года назад

urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-09791

Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес

CVSS3: 5.3
0%
Низкий
около 1 года назад
redos логотип
ROS-20250724-09

Уязвимость python3-urllib3

CVSS3: 5.3
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2025-50181

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

CVSS3: 5.3
0%
Низкий
около 1 года назад
redhat логотип
CVE-2025-50181

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

CVSS3: 5.3
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-50181

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

CVSS3: 5.3
0%
Низкий
около 1 года назад
msrc логотип
CVE-2025-50181

urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation

CVSS3: 5.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-50181

urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ...

CVSS3: 5.3
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:02985-1

Security update for python-urllib3

0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02736-1

Security update for python-urllib3

0%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:02735-1

Security update for python-urllib3

0%
Низкий
12 месяцев назад
github логотип
GHSA-pq67-6m6q-mj2v

urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation

CVSS3: 5.3
0%
Низкий
около 1 года назад

Уязвимостей на страницу