Логотип exploitDog
bind:"GHSA-48p4-8xcf-vxj5" OR bind:"CVE-2025-50182"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-48p4-8xcf-vxj5" OR bind:"CVE-2025-50182"

Количество 7

Количество 7

github логотип

GHSA-48p4-8xcf-vxj5

5 месяцев назад

urllib3 does not control redirects in browsers and Node.js

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-50182

5 месяцев назад

urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does not control redirects in browsers and Node.js. urllib3 supports being used in a Pyodide runtime utilizing the JavaScript Fetch API or falling back on XMLHttpRequest. This means Python libraries can be used to make HTTP requests from a browser or Node.js. Additionally, urllib3 provides a mechanism to control redirects, but the retries and redirect parameters are ignored with Pyodide; the runtime itself determines redirect behavior. This issue has been patched in version 2.5.0.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-50182

5 месяцев назад

urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does not control redirects in browsers and Node.js. urllib3 supports being used in a Pyodide runtime utilizing the JavaScript Fetch API or falling back on XMLHttpRequest. This means Python libraries can be used to make HTTP requests from a browser or Node.js. Additionally, urllib3 provides a mechanism to control redirects, but the retries and redirect parameters are ignored with Pyodide; the runtime itself determines redirect behavior. This issue has been patched in version 2.5.0.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-50182

5 месяцев назад

urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does not control redirects in browsers and Node.js. urllib3 supports being used in a Pyodide runtime utilizing the JavaScript Fetch API or falling back on XMLHttpRequest. This means Python libraries can be used to make HTTP requests from a browser or Node.js. Additionally, urllib3 provides a mechanism to control redirects, but the retries and redirect parameters are ignored with Pyodide; the runtime itself determines redirect behavior. This issue has been patched in version 2.5.0.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2025-50182

2 месяца назад

urllib3 does not control redirects in browsers and Node.js

EPSS: Низкий
debian логотип

CVE-2025-50182

5 месяцев назад

urllib3 is a user-friendly HTTP client library for Python. Starting in ...

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2025-09780

5 месяцев назад

Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-48p4-8xcf-vxj5

urllib3 does not control redirects in browsers and Node.js

CVSS3: 5.3
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2025-50182

urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does not control redirects in browsers and Node.js. urllib3 supports being used in a Pyodide runtime utilizing the JavaScript Fetch API or falling back on XMLHttpRequest. This means Python libraries can be used to make HTTP requests from a browser or Node.js. Additionally, urllib3 provides a mechanism to control redirects, but the retries and redirect parameters are ignored with Pyodide; the runtime itself determines redirect behavior. This issue has been patched in version 2.5.0.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-50182

urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does not control redirects in browsers and Node.js. urllib3 supports being used in a Pyodide runtime utilizing the JavaScript Fetch API or falling back on XMLHttpRequest. This means Python libraries can be used to make HTTP requests from a browser or Node.js. Additionally, urllib3 provides a mechanism to control redirects, but the retries and redirect parameters are ignored with Pyodide; the runtime itself determines redirect behavior. This issue has been patched in version 2.5.0.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-50182

urllib3 is a user-friendly HTTP client library for Python. Starting in version 2.2.0 and prior to 2.5.0, urllib3 does not control redirects in browsers and Node.js. urllib3 supports being used in a Pyodide runtime utilizing the JavaScript Fetch API or falling back on XMLHttpRequest. This means Python libraries can be used to make HTTP requests from a browser or Node.js. Additionally, urllib3 provides a mechanism to control redirects, but the retries and redirect parameters are ignored with Pyodide; the runtime itself determines redirect behavior. This issue has been patched in version 2.5.0.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-50182

urllib3 does not control redirects in browsers and Node.js

0%
Низкий
2 месяца назад
debian логотип
CVE-2025-50182

urllib3 is a user-friendly HTTP client library for Python. Starting in ...

CVSS3: 5.3
0%
Низкий
5 месяцев назад
fstec логотип
BDU:2025-09780

Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес

CVSS3: 5.3
0%
Низкий
5 месяцев назад

Уязвимостей на страницу