Количество 11
Количество 11
BDU:2025-09791
Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.
CVE-2025-50181
urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation
CVE-2025-50181
urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ...
SUSE-SU-2025:02985-1
Security update for python-urllib3
SUSE-SU-2025:02736-1
Security update for python-urllib3
SUSE-SU-2025:02735-1
Security update for python-urllib3
ROS-20250724-09
Уязвимость python3-urllib3
GHSA-pq67-6m6q-mj2v
urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-09791 Уязвимость HTTP библиотеки Urllib3 языка программирования Python, связанная с переадресацией URL на ненадежный сайт, позволяющая нарушителю перенаправлять пользователей на произвольный URL-адрес | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0. | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0. | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0. | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50181 urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation | CVSS3: 5.3 | 0% Низкий | 4 месяца назад | |
CVE-2025-50181 urllib3 is a user-friendly HTTP client library for Python. Prior to 2. ... | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад | |
SUSE-SU-2025:02985-1 Security update for python-urllib3 | 0% Низкий | 2 месяца назад | ||
SUSE-SU-2025:02736-1 Security update for python-urllib3 | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2025:02735-1 Security update for python-urllib3 | 0% Низкий | 3 месяца назад | ||
ROS-20250724-09 Уязвимость python3-urllib3 | CVSS3: 5.3 | 0% Низкий | 4 месяца назад | |
GHSA-pq67-6m6q-mj2v urllib3 redirects are not disabled when retries are disabled on PoolManager instantiation | CVSS3: 5.3 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу