RHSA-2024:0116 -- Redhat python3-urllib3ID: oval:org.secpod.oval:def:509097 | Date: (C)2024-03-12 (M)2024-03-12 |
Class: PATCH | Family: unix |
The python-urllib3 package provides the Python HTTP module with connection pooling and file POST abilities. Security Fix: python-urllib3: Cookie request header isn"t stripped during cross-origin redirects urllib3: Request body not stripped after redirect from 303 status changes request method to GET For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.
Platform: |
Red Hat Enterprise Linux 8 |