Логотип exploitDog
bind:"CVE-2022-0391" OR bind:"CVE-2023-24329"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-0391" OR bind:"CVE-2023-24329"

Количество 54

Количество 54

oracle-oval логотип

ELSA-2023-3550

больше 2 лет назад

ELSA-2023-3550: python security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2022-0391

почти 4 года назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2022-0391

больше 4 лет назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-0391

почти 4 года назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2022-0391

почти 4 года назад

A flaw was found in Python specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1 3.9.5 3.8.11 3.7.11 and 3.6.14.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-0391

почти 4 года назад

A flaw was found in Python, specifically within the urllib.parse modul ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2023-24329

почти 3 года назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-24329

почти 3 года назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-24329

почти 3 года назад

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-24329

почти 3 года назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-24329

почти 3 года назад

An issue in the urllib.parse component of Python before 3.11.4 allows ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-75jm-2xrg-5wpf

почти 4 года назад

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

EPSS: Низкий
fstec логотип

BDU:2022-02302

почти 4 года назад

Уязвимость модуля urllib.parse интерпретатора языка программирования Python, позволяющая нарушителю внедрить произвольные данные в ответ сервера

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2639-1

больше 2 лет назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:0868-1

больше 2 лет назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:0736-1

больше 2 лет назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:0662-1

больше 2 лет назад

Security update for python36

EPSS: Низкий
rocky логотип

RLSA-2023:3811

больше 2 лет назад

Important: python39:3.9 and python39-devel:3.9 security update

EPSS: Низкий
rocky логотип

RLSA-2023:3781

больше 2 лет назад

Important: python38:3.8 and python38-devel:3.8 security update

EPSS: Низкий
rocky логотип

RLSA-2023:3780

больше 2 лет назад

Important: python27:2.7 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-3550

ELSA-2023-3550: python security update (IMPORTANT)

больше 2 лет назад
ubuntu логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
2%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 5.3
2%
Низкий
больше 4 лет назад
nvd логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

CVSS3: 7.5
2%
Низкий
почти 4 года назад
msrc логотип
CVE-2022-0391

A flaw was found in Python specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1 3.9.5 3.8.11 3.7.11 and 3.6.14.

CVSS3: 7.5
2%
Низкий
почти 4 года назад
debian логотип
CVE-2022-0391

A flaw was found in Python, specifically within the urllib.parse modul ...

CVSS3: 7.5
2%
Низкий
почти 4 года назад
ubuntu логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
msrc логотип
CVSS3: 7.5
1%
Низкий
почти 3 года назад
debian логотип
CVE-2023-24329

An issue in the urllib.parse component of Python before 3.11.4 allows ...

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-75jm-2xrg-5wpf

A flaw was found in Python, specifically within the urllib.parse module. This module helps break Uniform Resource Locator (URL) strings into components. The issue involves how the urlparse method does not sanitize input and allows characters like '\r' and '\n' in the URL path. This flaw allows an attacker to input a crafted URL, leading to injection attacks. This flaw affects Python versions prior to 3.10.0b1, 3.9.5, 3.8.11, 3.7.11 and 3.6.14.

2%
Низкий
почти 4 года назад
fstec логотип
BDU:2022-02302

Уязвимость модуля urllib.parse интерпретатора языка программирования Python, позволяющая нарушителю внедрить произвольные данные в ответ сервера

CVSS3: 7.5
2%
Низкий
почти 4 года назад
suse-cvrf логотип
SUSE-SU-2023:2639-1

Security update for python

1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:0868-1

Security update for python3

1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:0736-1

Security update for python3

1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:0662-1

Security update for python36

1%
Низкий
больше 2 лет назад
rocky логотип
RLSA-2023:3811

Important: python39:3.9 and python39-devel:3.9 security update

1%
Низкий
больше 2 лет назад
rocky логотип
RLSA-2023:3781

Important: python38:3.8 and python38-devel:3.8 security update

1%
Низкий
больше 2 лет назад
rocky логотип
RLSA-2023:3780

Important: python27:2.7 security update

1%
Низкий
больше 2 лет назад

Уязвимостей на страницу