Urllib3 - (bulletinjul2019)ID: oval:org.secpod.oval:def:2105039 | Date: (C)2020-01-06 (M)2024-04-17 |
Class: PATCH | Family: unix |
In the urllib3 library through 1.24.1 for Python, CRLF injection is possible if the attacker controls the request parameter.
Product: |
library/python/urllib3 |
library/python/urllib3-35 |
library/python/urllib3-34 |
library/python/urllib3-27 |
library/python/paramiko |
library/python/paramiko-35 |
library/python/paramiko-34 |
library/python/paramiko-27 |
library/python/lxml |
library/python/lxml-35 |
library/python/lxml-34 |
library/python/lxml-27 |
library/python/jinja2 |
library/python/jinja2-35 |
library/python/jinja2-34 |
library/python/jinja2-27 |