Логотип exploitDog
bind: "CVE-2022-36087"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-36087"

Количество 8

Количество 8

ubuntu логотип

CVE-2022-36087

почти 3 года назад

OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it is used. OAuthLib applications using OAuth2.0 provider support or use directly `uri_validate` are affected by this issue. Version 3.2.1 contains a patch. There are no known workarounds.

CVSS3: 5.7
EPSS: Низкий
redhat логотип

CVE-2022-36087

почти 3 года назад

OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it is used. OAuthLib applications using OAuth2.0 provider support or use directly `uri_validate` are affected by this issue. Version 3.2.1 contains a patch. There are no known workarounds.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2022-36087

почти 3 года назад

OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it is used. OAuthLib applications using OAuth2.0 provider support or use directly `uri_validate` are affected by this issue. Version 3.2.1 contains a patch. There are no known workarounds.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2022-36087

почти 3 года назад

OAuthLib is an implementation of the OAuth request-signing logic for P ...

CVSS3: 5.7
EPSS: Низкий
redos логотип

ROS-20250731-01

около 1 месяца назад

Уязвимость python3-oauthlib

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3pgj-pg6c-r5p7

почти 3 года назад

OAuthLib vulnerable to DoS when attacker provides malicious IPV6 URI

CVSS3: 5.7
EPSS: Низкий
oracle-oval логотип

ELSA-2023-2161

больше 2 лет назад

ELSA-2023-2161: fence-agents security and bug fix update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-09877

почти 3 года назад

Уязвимость реализация логики подписи запросов OAuth для Python OAuthLib, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-36087

OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it is used. OAuthLib applications using OAuth2.0 provider support or use directly `uri_validate` are affected by this issue. Version 3.2.1 contains a patch. There are no known workarounds.

CVSS3: 5.7
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2022-36087

OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it is used. OAuthLib applications using OAuth2.0 provider support or use directly `uri_validate` are affected by this issue. Version 3.2.1 contains a patch. There are no known workarounds.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2022-36087

OAuthLib is an implementation of the OAuth request-signing logic for Python 3.6+. In OAuthLib versions 3.1.1 until 3.2.1, an attacker providing malicious redirect uri can cause denial of service. An attacker can also leverage usage of `uri_validate` functions depending where it is used. OAuthLib applications using OAuth2.0 provider support or use directly `uri_validate` are affected by this issue. Version 3.2.1 contains a patch. There are no known workarounds.

CVSS3: 5.7
0%
Низкий
почти 3 года назад
debian логотип
CVE-2022-36087

OAuthLib is an implementation of the OAuth request-signing logic for P ...

CVSS3: 5.7
0%
Низкий
почти 3 года назад
redos логотип
ROS-20250731-01

Уязвимость python3-oauthlib

CVSS3: 6.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-3pgj-pg6c-r5p7

OAuthLib vulnerable to DoS when attacker provides malicious IPV6 URI

CVSS3: 5.7
0%
Низкий
почти 3 года назад
oracle-oval логотип
ELSA-2023-2161

ELSA-2023-2161: fence-agents security and bug fix update (MODERATE)

больше 2 лет назад
fstec логотип
BDU:2025-09877

Уязвимость реализация логики подписи запросов OAuth для Python OAuthLib, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу