Количество 29
Количество 29
ELSA-2024-0133
ELSA-2024-0133: fence-agents security update (MODERATE)
ELSA-2023-7753
ELSA-2023-7753: fence-agents security update (MODERATE)

CVE-2023-37920
Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store.

CVE-2023-37920
Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store.

CVE-2023-37920
Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store.

CVE-2023-37920
CVE-2023-37920
Certifi is a curated collection of Root Certificates for validating th ...

CVE-2023-43804
urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the `Cookie` HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a `Cookie` header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5.

CVE-2023-43804
urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the `Cookie` HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a `Cookie` header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5.

CVE-2023-43804
urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the `Cookie` HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a `Cookie` header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5.

CVE-2023-43804
CVE-2023-43804
urllib3 is a user-friendly HTTP client library for Python. urllib3 doe ...
GHSA-xqr8-7jwr-rhp7
Removal of e-Tugra root certificate

BDU:2023-05463
Уязвимость корневых сертификатов e-Tugra пакета для проверки надежности сертификатов SSL Certifi, позволяющая нарушителю реализовать атаку типа «человек посередине»

SUSE-SU-2023:4108-1
Security update for python-urllib3

SUSE-SU-2023:4064-1
Security update for python-urllib3

RLSA-2024:2986
Moderate: python3.11-urllib3 security update
GHSA-v845-jxx5-vc9f
`Cookie` HTTP header isn't stripped on cross-origin redirects
ELSA-2024-2986
ELSA-2024-2986: python3.11-urllib3 security update (MODERATE)
ELSA-2024-2159
ELSA-2024-2159: python3.11-urllib3 security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2024-0133 ELSA-2024-0133: fence-agents security update (MODERATE) | больше 1 года назад | |||
ELSA-2023-7753 ELSA-2023-7753: fence-agents security update (MODERATE) | больше 1 года назад | |||
![]() | CVE-2023-37920 Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store. | CVSS3: 7.5 | 0% Низкий | почти 2 года назад |
![]() | CVE-2023-37920 Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store. | CVSS3: 9.1 | 0% Низкий | почти 2 года назад |
![]() | CVE-2023-37920 Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi prior to version 2023.07.22 recognizes "e-Tugra" root certificates. e-Tugra's root certificates were subject to an investigation prompted by reporting of security issues in their systems. Certifi 2023.07.22 removes root certificates from "e-Tugra" from the root store. | CVSS3: 7.5 | 0% Низкий | почти 2 года назад |
![]() | CVSS3: 9.8 | 0% Низкий | 12 месяцев назад | |
CVE-2023-37920 Certifi is a curated collection of Root Certificates for validating th ... | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
![]() | CVE-2023-43804 urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the `Cookie` HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a `Cookie` header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад |
![]() | CVE-2023-43804 urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the `Cookie` HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a `Cookie` header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад |
![]() | CVE-2023-43804 urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the `Cookie` HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a `Cookie` header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад |
![]() | CVSS3: 8.1 | 1% Низкий | 2 месяца назад | |
CVE-2023-43804 urllib3 is a user-friendly HTTP client library for Python. urllib3 doe ... | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
GHSA-xqr8-7jwr-rhp7 Removal of e-Tugra root certificate | CVSS3: 7.5 | 0% Низкий | почти 2 года назад | |
![]() | BDU:2023-05463 Уязвимость корневых сертификатов e-Tugra пакета для проверки надежности сертификатов SSL Certifi, позволяющая нарушителю реализовать атаку типа «человек посередине» | CVSS3: 7.5 | 0% Низкий | почти 2 года назад |
![]() | SUSE-SU-2023:4108-1 Security update for python-urllib3 | 1% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4064-1 Security update for python-urllib3 | 1% Низкий | больше 1 года назад | |
![]() | RLSA-2024:2986 Moderate: python3.11-urllib3 security update | 1% Низкий | около 1 года назад | |
GHSA-v845-jxx5-vc9f `Cookie` HTTP header isn't stripped on cross-origin redirects | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
ELSA-2024-2986 ELSA-2024-2986: python3.11-urllib3 security update (MODERATE) | около 1 года назад | |||
ELSA-2024-2159 ELSA-2024-2159: python3.11-urllib3 security update (MODERATE) | около 1 года назад |
Уязвимостей на страницу