Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 54

Количество 54

oracle-oval логотип

ELSA-2023-3550

около 3 лет назад

ELSA-2023-3550: python security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2022-0391

больше 4 лет назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-0391

больше 5 лет назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-0391

больше 4 лет назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-0391

больше 4 лет назад

A flaw was found in Python specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1 3.9.5 3.8.11 3.7.11 and 3.6.14.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-0391

больше 4 лет назад

A flaw was found in Python, specifically within the urllib.parse modul ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2023-24329

больше 3 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2023-24329

больше 3 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2023-24329

больше 3 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
EPSS: Средний
msrc логотип

CVE-2023-24329

больше 3 лет назад

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2023-24329

больше 3 лет назад

An issue in the urllib.parse component of Python before 3.11.4 allows ...

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-75jm-2xrg-5wpf

больше 4 лет назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

EPSS: Низкий
fstec логотип

BDU:2022-02302

больше 4 лет назад

Уязвимость модуля urllib.parse интерпретатора языка программирования Python, позволяющая нарушителю внедрить произвольные данные в ответ сервера

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2639-1

около 3 лет назад

Security update for python

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2023:0868-1

больше 3 лет назад

Security update for python3

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2023:0736-1

больше 3 лет назад

Security update for python3

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2023:0662-1

больше 3 лет назад

Security update for python36

EPSS: Средний
rocky логотип

RLSA-2023:3811

почти 3 года назад

Important: python39:3.9 and python39-devel:3.9 security update

EPSS: Средний
rocky логотип

RLSA-2023:3781

почти 3 года назад

Important: python38:3.8 and python38-devel:3.8 security update

EPSS: Средний
rocky логотип

RLSA-2023:3780

около 3 лет назад

Important: python27:2.7 security update

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-3550

ELSA-2023-3550: python security update (IMPORTANT)

около 3 лет назад
ubuntu логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
8%
Низкий
больше 4 лет назад
redhat логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 5.3
8%
Низкий
больше 5 лет назад
nvd логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
8%
Низкий
больше 4 лет назад
msrc логотип
CVE-2022-0391

A flaw was found in Python specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1 3.9.5 3.8.11 3.7.11 and 3.6.14.

CVSS3: 7.5
8%
Низкий
больше 4 лет назад
debian логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse modul ...

CVSS3: 7.5
8%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
20%
Средний
больше 3 лет назад
redhat логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
20%
Средний
больше 3 лет назад
nvd логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
20%
Средний
больше 3 лет назад
msrc логотип
CVSS3: 7.5
20%
Средний
больше 3 лет назад
debian логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows ...

CVSS3: 7.5
20%
Средний
больше 3 лет назад
github логотип
GHSA-75jm-2xrg-5wpf

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

8%
Низкий
больше 4 лет назад
fstec логотип
BDU:2022-02302

Уязвимость модуля urllib.parse интерпретатора языка программирования Python, позволяющая нарушителю внедрить произвольные данные в ответ сервера

CVSS3: 7.5
8%
Низкий
больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2023:2639-1

Security update for python

20%
Средний
около 3 лет назад
suse-cvrf логотип
SUSE-SU-2023:0868-1

Security update for python3

20%
Средний
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2023:0736-1

Security update for python3

20%
Средний
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2023:0662-1

Security update for python36

20%
Средний
больше 3 лет назад
rocky логотип
RLSA-2023:3811

Important: python39:3.9 and python39-devel:3.9 security update

20%
Средний
почти 3 года назад
rocky логотип
RLSA-2023:3781

Important: python38:3.8 and python38-devel:3.8 security update

20%
Средний
почти 3 года назад
rocky логотип
RLSA-2023:3780

Important: python27:2.7 security update

20%
Средний
около 3 лет назад

Уязвимостей на страницу