Количество 13
Количество 13
GHSA-9hjg-9r4m-mvj7
Requests vulnerable to .netrc credentials leak via malicious URLs

CVE-2024-47081
Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc file can be disabled with `trust_env=False` on one's Requests Session.

CVE-2024-47081
Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc file can be disabled with `trust_env=False` on one's Requests Session.

CVE-2024-47081
Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc file can be disabled with `trust_env=False` on one's Requests Session.

CVE-2024-47081
CVE-2024-47081
Requests is a HTTP library. Due to a URL parsing issue, Requests relea ...

SUSE-SU-2025:02205-1
Security update for python-requests

SUSE-SU-2025:01999-1
Security update for python-requests

SUSE-SU-2025:01998-1
Security update for python-requests

SUSE-SU-2025:01997-1
Security update for python3-requests

ROS-20250703-12
Уязвимость python2-chardet

ROS-20250703-11
Уязвимость python2-requests

BDU:2025-08576
Уязвимость библиотеки HTTP запросов языка программирования Python Requests, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-9hjg-9r4m-mvj7 Requests vulnerable to .netrc credentials leak via malicious URLs | CVSS3: 5.3 | 0% Низкий | 2 месяца назад | |
![]() | CVE-2024-47081 Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc file can be disabled with `trust_env=False` on one's Requests Session. | CVSS3: 5.3 | 0% Низкий | 2 месяца назад |
![]() | CVE-2024-47081 Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc file can be disabled with `trust_env=False` on one's Requests Session. | CVSS3: 5.3 | 0% Низкий | 2 месяца назад |
![]() | CVE-2024-47081 Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc file can be disabled with `trust_env=False` on one's Requests Session. | CVSS3: 5.3 | 0% Низкий | 2 месяца назад |
![]() | CVSS3: 5.3 | 0% Низкий | около 1 месяца назад | |
CVE-2024-47081 Requests is a HTTP library. Due to a URL parsing issue, Requests relea ... | CVSS3: 5.3 | 0% Низкий | 2 месяца назад | |
![]() | SUSE-SU-2025:02205-1 Security update for python-requests | 0% Низкий | около 1 месяца назад | |
![]() | SUSE-SU-2025:01999-1 Security update for python-requests | 0% Низкий | около 2 месяцев назад | |
![]() | SUSE-SU-2025:01998-1 Security update for python-requests | 0% Низкий | около 2 месяцев назад | |
![]() | SUSE-SU-2025:01997-1 Security update for python3-requests | 0% Низкий | около 2 месяцев назад | |
![]() | ROS-20250703-12 Уязвимость python2-chardet | CVSS3: 5.3 | 0% Низкий | около 1 месяца назад |
![]() | ROS-20250703-11 Уязвимость python2-requests | CVSS3: 5.3 | 0% Низкий | около 1 месяца назад |
![]() | BDU:2025-08576 Уязвимость библиотеки HTTP запросов языка программирования Python Requests, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 5.3 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу