Логотип exploitDog
bind:"GHSA-5qjr-cj9f-phrx" OR bind:"CVE-2025-0938"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-5qjr-cj9f-phrx" OR bind:"CVE-2025-0938"

Количество 30

Количество 30

github логотип

GHSA-5qjr-cj9f-phrx

около 1 года назад

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

EPSS: Низкий
ubuntu логотип

CVE-2025-0938

около 1 года назад

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

EPSS: Низкий
redhat логотип

CVE-2025-0938

около 1 года назад

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2025-0938

около 1 года назад

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

EPSS: Низкий
msrc логотип

CVE-2025-0938

около 1 года назад

URL parser allowed square brackets in domain names

EPSS: Низкий
debian логотип

CVE-2025-0938

около 1 года назад

The Python standard library functions `urllib.parse.urlsplit` and `url ...

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0814-1

около 1 года назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0756-1

около 1 года назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0554-1

около 1 года назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0553-1

около 1 года назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0552-1

около 1 года назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0551-1

около 1 года назад

Security update for python311

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0514-1

около 1 года назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0434-1

около 1 года назад

Security update for python36

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0419-1

около 1 года назад

Security update for python311

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0406-1

около 1 года назад

Security update for python310

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0386-1

около 1 года назад

Security update for python39

EPSS: Низкий
rocky логотип

RLSA-2025:7109

6 месяцев назад

Moderate: python3.11 security update

EPSS: Низкий
rocky логотип

RLSA-2025:7107

6 месяцев назад

Moderate: python3.12 security update

EPSS: Низкий
rocky логотип

RLSA-2025:6977

6 месяцев назад

Moderate: python3.9 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-5qjr-cj9f-phrx

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

2%
Низкий
около 1 года назад
ubuntu логотип
CVE-2025-0938

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

2%
Низкий
около 1 года назад
redhat логотип
CVE-2025-0938

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

CVSS3: 6.8
2%
Низкий
около 1 года назад
nvd логотип
CVE-2025-0938

The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.

2%
Низкий
около 1 года назад
msrc логотип
CVE-2025-0938

URL parser allowed square brackets in domain names

2%
Низкий
около 1 года назад
debian логотип
CVE-2025-0938

The Python standard library functions `urllib.parse.urlsplit` and `url ...

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0814-1

Security update for python

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0756-1

Security update for python

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0554-1

Security update for python3

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0553-1

Security update for python

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0552-1

Security update for python3

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0551-1

Security update for python311

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0514-1

Security update for python

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0434-1

Security update for python36

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0419-1

Security update for python311

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0406-1

Security update for python310

2%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0386-1

Security update for python39

2%
Низкий
около 1 года назад
rocky логотип
RLSA-2025:7109

Moderate: python3.11 security update

2%
Низкий
6 месяцев назад
rocky логотип
RLSA-2025:7107

Moderate: python3.12 security update

2%
Низкий
6 месяцев назад
rocky логотип
RLSA-2025:6977

Moderate: python3.9 security update

2%
Низкий
6 месяцев назад

Уязвимостей на страницу