High severityNVD Advisory· Published Dec 5, 2025· Updated Dec 5, 2025
urllib3 allows an unbounded number of links in the decompression chain
CVE-2025-66418
Description
urllib3 is a user-friendly HTTP client library for Python. Starting in version 1.24 and prior to 2.6.0, the number of links in the decompression chain was unbounded allowing a malicious server to insert a virtually unlimited number of compression steps leading to high CPU usage and massive memory allocation for the decompressed data. This vulnerability is fixed in 2.6.0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
urllib3PyPI | >= 1.24, < 2.6.0 | 2.6.0 |
Affected products
320- osv-coords319 versionspkg:apk/chainguard/airflow-2pkg:apk/chainguard/airflow-2-bitnami-compatpkg:apk/chainguard/airflow-2-compatpkg:apk/chainguard/airflow-2-iamguarded-compatpkg:apk/chainguard/airflow-3pkg:apk/chainguard/airflow-3-bitnami-compatpkg:apk/chainguard/airflow-3-compatpkg:apk/chainguard/airflow-3-iamguarded-compatpkg:apk/chainguard/airflow-core-2pkg:apk/chainguard/airflow-core-2-compatpkg:apk/chainguard/airflow-core-2-oci-entrypointpkg:apk/chainguard/airflow-core-3pkg:apk/chainguard/airflow-core-3-compatpkg:apk/chainguard/airflow-core-3-oci-entrypointpkg:apk/chainguard/ansible-operatorpkg:apk/chainguard/ansible-operator-fipspkg:apk/chainguard/apache-beam-python-3.11-sdkpkg:apk/chainguard/authentikpkg:apk/chainguard/authentik-go-serverpkg:apk/chainguard/awxpkg:apk/chainguard/azpkg:apk/chainguard/az-iamguarded-compatpkg:apk/chainguard/azure-functions-host-python3.11-workerpkg:apk/chainguard/azure-functions-host-python3.12-workerpkg:apk/chainguard/azure-functions-host-python3.13-workerpkg:apk/chainguard/barmanpkg:apk/chainguard/barman-cloudnative-pgpkg:apk/chainguard/confluent-docker-utilspkg:apk/chainguard/dask-gatewaypkg:apk/chainguard/dask-gateway-serverpkg:apk/chainguard/dask-kubernetespkg:apk/chainguard/datadog-agent-7.71pkg:apk/chainguard/datadog-agent-7.72pkg:apk/chainguard/datadog-agent-7.72-core-integrationspkg:apk/chainguard/datadog-agent-7.73pkg:apk/chainguard/datadog-agent-7.73-core-integrationspkg:apk/chainguard/datadog-agent-7.74pkg:apk/chainguard/datadog-agent-7.74-core-integrationspkg:apk/chainguard/datadog-agent-7.75pkg:apk/chainguard/datadog-agent-7.75-core-integrationspkg:apk/chainguard/datadog-agent-7.76pkg:apk/chainguard/datadog-agent-7.76-core-integrationspkg:apk/chainguard/datadog-agent-7.77pkg:apk/chainguard/datadog-agent-7.77-core-integrationspkg:apk/chainguard/datadog-agent-fips-7.71pkg:apk/chainguard/datadog-agent-fips-7.72pkg:apk/chainguard/datadog-agent-fips-7.72-core-integrationspkg:apk/chainguard/datadog-agent-fips-7.73pkg:apk/chainguard/datadog-agent-fips-7.73-core-integrationspkg:apk/chainguard/datadog-agent-fips-7.74pkg:apk/chainguard/datadog-agent-fips-7.74-core-integrationspkg:apk/chainguard/datadog-agent-fips-7.75pkg:apk/chainguard/datadog-agent-fips-7.75-core-integrationspkg:apk/chainguard/datadog-agent-fips-7.76pkg:apk/chainguard/datadog-agent-fips-7.76-core-integrationspkg:apk/chainguard/datadog-agent-fips-7.77pkg:apk/chainguard/datadog-agent-fips-7.77-core-integrationspkg:apk/chainguard/emissarypkg:apk/chainguard/emissary-apiextpkg:apk/chainguard/emissary-oci-entrypointpkg:apk/chainguard/ggshieldpkg:apk/chainguard/jupyter-base-notebookpkg:apk/chainguard/jwt-toolpkg:apk/chainguard/k8s-sidecarpkg:apk/chainguard/katib-earlystoppingpkg:apk/chainguard/katib-suggestion-hyperbandpkg:apk/chainguard/katib-suggestion-hyperoptpkg:apk/chainguard/katib-suggestion-nas-dartspkg:apk/chainguard/katib-suggestion-optuna-enaspkg:apk/chainguard/katib-suggestion-pbt-enaspkg:apk/chainguard/katib-suggestion-skopt-enaspkg:apk/chainguard/kservepkg:apk/chainguard/kserve-agentpkg:apk/chainguard/kserve-agent-compatpkg:apk/chainguard/kserve-managerpkg:apk/chainguard/kserve-manager-compatpkg:apk/chainguard/kserve-qpextpkg:apk/chainguard/kserve-qpext-compatpkg:apk/chainguard/kserve-routerpkg:apk/chainguard/kserve-router-compatpkg:apk/chainguard/kserve-storage-controllerpkg:apk/chainguard/kubeflow-jupyter-web-apppkg:apk/chainguard/kubeflow-pipelinespkg:apk/chainguard/kubeflow-pipelines-cache_serverpkg:apk/chainguard/kubeflow-pipelines-frontendpkg:apk/chainguard/kubeflow-pipelines-metadata-envoy-configpkg:apk/chainguard/kubeflow-pipelines-metadata-writerpkg:apk/chainguard/kubeflow-pipelines-metadata-writer-compatpkg:apk/chainguard/kubeflow-pipelines-persistence_agentpkg:apk/chainguard/kubeflow-pipelines-scheduledworkflowpkg:apk/chainguard/kubeflow-pipelines-viewer-crd-controllerpkg:apk/chainguard/kubeflow-pipelines-visualization-serverpkg:apk/chainguard/kubeflow-volumes-web-apppkg:apk/chainguard/localstackpkg:apk/chainguard/mlflowpkg:apk/chainguard/mlflow-bitnamipkg:apk/chainguard/mlflow-iamguarded-compatpkg:apk/chainguard/nemopkg:apk/chainguard/nvidia-nsight-compute-13.1pkg:apk/chainguard/open-webuipkg:apk/chainguard/pgadmin4pkg:apk/chainguard/pgadmin4-fipspkg:apk/chainguard/py3.10-ambassadorpkg:apk/chainguard/py3.10-pip-basepkg:apk/chainguard/py3.10-pipenvpkg:apk/chainguard/py3.10-urllib3pkg:apk/chainguard/py3.11-ambassadorpkg:apk/chainguard/py3.11-pip-basepkg:apk/chainguard/py3.11-pipenvpkg:apk/chainguard/py3.11-text-generation-inferencepkg:apk/chainguard/py3.11-urllib3pkg:apk/chainguard/py3.12-ambassadorpkg:apk/chainguard/py3.12-pip-basepkg:apk/chainguard/py3.12-pipenvpkg:apk/chainguard/py3.12-urllib3pkg:apk/chainguard/py3.13-ambassadorpkg:apk/chainguard/py3.13-pip-basepkg:apk/chainguard/py3.13-pipenvpkg:apk/chainguard/py3.13-scanner-test-librariespkg:apk/chainguard/py3.13-urllib3pkg:apk/chainguard/py3.14-pip-basepkg:apk/chainguard/py3-cassandra-medusapkg:apk/chainguard/py3-hashinpkg:apk/chainguard/py3-semgreppkg:apk/chainguard/py3-supported-urllib3pkg:apk/chainguard/py3-urllib3pkg:apk/chainguard/pypy-3.10pkg:apk/chainguard/pypy-3.11pkg:apk/chainguard/request-1276pkg:apk/chainguard/semgreppkg:apk/chainguard/spamcheckpkg:apk/chainguard/spamcheck-compatpkg:apk/chainguard/superset-5.0pkg:apk/chainguard/superset-5.0-entrypointpkg:apk/chainguard/superset-5.0-iamguarded-compatpkg:apk/chainguard/tensorflow-cpu-jupyterpkg:apk/chainguard/tensorflow-gpu-jupyterpkg:apk/chainguard/tritonserver-backend-vllm-cuda-12.9pkg:apk/chainguard/tritonserver-backend-vllm-meta-cuda-12.9pkg:apk/wolfi/airflow-3pkg:apk/wolfi/airflow-3-bitnami-compatpkg:apk/wolfi/airflow-3-compatpkg:apk/wolfi/airflow-3-iamguarded-compatpkg:apk/wolfi/ansible-operatorpkg:apk/wolfi/azpkg:apk/wolfi/az-iamguarded-compatpkg:apk/wolfi/confluent-docker-utilspkg:apk/wolfi/dask-gatewaypkg:apk/wolfi/dask-gateway-serverpkg:apk/wolfi/dask-kubernetespkg:apk/wolfi/datadog-agent-7.72pkg:apk/wolfi/datadog-agent-7.72-core-integrationspkg:apk/wolfi/datadog-agent-7.73pkg:apk/wolfi/datadog-agent-7.73-core-integrationspkg:apk/wolfi/datadog-agent-7.74pkg:apk/wolfi/datadog-agent-7.74-core-integrationspkg:apk/wolfi/datadog-agent-7.75pkg:apk/wolfi/datadog-agent-7.75-core-integrationspkg:apk/wolfi/datadog-agent-7.76pkg:apk/wolfi/datadog-agent-7.76-core-integrationspkg:apk/wolfi/datadog-agent-7.77pkg:apk/wolfi/datadog-agent-7.77-core-integrationspkg:apk/wolfi/emissarypkg:apk/wolfi/emissary-apiextpkg:apk/wolfi/emissary-oci-entrypointpkg:apk/wolfi/ggshieldpkg:apk/wolfi/jupyter-base-notebookpkg:apk/wolfi/jwt-toolpkg:apk/wolfi/k8s-sidecarpkg:apk/wolfi/katib-earlystoppingpkg:apk/wolfi/katib-suggestion-hyperbandpkg:apk/wolfi/katib-suggestion-hyperoptpkg:apk/wolfi/katib-suggestion-nas-dartspkg:apk/wolfi/katib-suggestion-optuna-enaspkg:apk/wolfi/katib-suggestion-pbt-enaspkg:apk/wolfi/katib-suggestion-skopt-enaspkg:apk/wolfi/kservepkg:apk/wolfi/kserve-agentpkg:apk/wolfi/kserve-agent-compatpkg:apk/wolfi/kserve-managerpkg:apk/wolfi/kserve-manager-compatpkg:apk/wolfi/kserve-qpextpkg:apk/wolfi/kserve-qpext-compatpkg:apk/wolfi/kserve-routerpkg:apk/wolfi/kserve-router-compatpkg:apk/wolfi/kserve-storage-controllerpkg:apk/wolfi/kubeflow-jupyter-web-apppkg:apk/wolfi/kubeflow-pipelinespkg:apk/wolfi/kubeflow-pipelines-cache_serverpkg:apk/wolfi/kubeflow-pipelines-frontendpkg:apk/wolfi/kubeflow-pipelines-metadata-envoy-configpkg:apk/wolfi/kubeflow-pipelines-metadata-writerpkg:apk/wolfi/kubeflow-pipelines-metadata-writer-compatpkg:apk/wolfi/kubeflow-pipelines-persistence_agentpkg:apk/wolfi/kubeflow-pipelines-scheduledworkflowpkg:apk/wolfi/kubeflow-pipelines-viewer-crd-controllerpkg:apk/wolfi/kubeflow-pipelines-visualization-serverpkg:apk/wolfi/kubeflow-volumes-web-apppkg:apk/wolfi/mlflowpkg:apk/wolfi/mlflow-bitnamipkg:apk/wolfi/mlflow-iamguarded-compatpkg:apk/wolfi/open-webuipkg:apk/wolfi/py3.10-ambassadorpkg:apk/wolfi/py3.10-pip-basepkg:apk/wolfi/py3.10-pipenvpkg:apk/wolfi/py3.10-urllib3pkg:apk/wolfi/py3.11-ambassadorpkg:apk/wolfi/py3.11-pip-basepkg:apk/wolfi/py3.11-pipenvpkg:apk/wolfi/py3.11-urllib3pkg:apk/wolfi/py3.12-ambassadorpkg:apk/wolfi/py3.12-pip-basepkg:apk/wolfi/py3.12-pipenvpkg:apk/wolfi/py3.12-urllib3pkg:apk/wolfi/py3.13-ambassadorpkg:apk/wolfi/py3.13-pip-basepkg:apk/wolfi/py3.13-pipenvpkg:apk/wolfi/py3.13-urllib3pkg:apk/wolfi/py3.14-pip-basepkg:apk/wolfi/py3-cassandra-medusapkg:apk/wolfi/py3-semgreppkg:apk/wolfi/py3-supported-urllib3pkg:apk/wolfi/py3-urllib3pkg:apk/wolfi/pypy-3.10pkg:apk/wolfi/pypy-3.11pkg:apk/wolfi/semgreppkg:apk/wolfi/superset-5.0pkg:apk/wolfi/superset-5.0-entrypointpkg:apk/wolfi/superset-5.0-iamguarded-compatpkg:apk/wolfi/tensorflow-cpu-jupyterpkg:pypi/urllib3pkg:rpm/almalinux/fence-agents-aliyunpkg:rpm/almalinux/fence-agents-allpkg:rpm/almalinux/fence-agents-amt-wspkg:rpm/almalinux/fence-agents-apcpkg:rpm/almalinux/fence-agents-apc-snmppkg:rpm/almalinux/fence-agents-awspkg:rpm/almalinux/fence-agents-azure-armpkg:rpm/almalinux/fence-agents-bladecenterpkg:rpm/almalinux/fence-agents-brocadepkg:rpm/almalinux/fence-agents-cisco-mdspkg:rpm/almalinux/fence-agents-cisco-ucspkg:rpm/almalinux/fence-agents-commonpkg:rpm/almalinux/fence-agents-computepkg:rpm/almalinux/fence-agents-drac5pkg:rpm/almalinux/fence-agents-eaton-snmppkg:rpm/almalinux/fence-agents-emersonpkg:rpm/almalinux/fence-agents-epspkg:rpm/almalinux/fence-agents-gcepkg:rpm/almalinux/fence-agents-heuristics-pingpkg:rpm/almalinux/fence-agents-hpbladepkg:rpm/almalinux/fence-agents-ibmbladepkg:rpm/almalinux/fence-agents-ibm-powervspkg:rpm/almalinux/fence-agents-ibm-vpcpkg:rpm/almalinux/fence-agents-ifmibpkg:rpm/almalinux/fence-agents-ilo2pkg:rpm/almalinux/fence-agents-ilo-moonshotpkg:rpm/almalinux/fence-agents-ilo-mppkg:rpm/almalinux/fence-agents-ilo-sshpkg:rpm/almalinux/fence-agents-intelmodularpkg:rpm/almalinux/fence-agents-ipdupkg:rpm/almalinux/fence-agents-ipmilanpkg:rpm/almalinux/fence-agents-kdumppkg:rpm/almalinux/fence-agents-kubevirtpkg:rpm/almalinux/fence-agents-lparpkg:rpm/almalinux/fence-agents-mpathpkg:rpm/almalinux/fence-agents-nutanix-ahvpkg:rpm/almalinux/fence-agents-openstackpkg:rpm/almalinux/fence-agents-redfishpkg:rpm/almalinux/fence-agents-rhevmpkg:rpm/almalinux/fence-agents-rsapkg:rpm/almalinux/fence-agents-rsbpkg:rpm/almalinux/fence-agents-sbdpkg:rpm/almalinux/fence-agents-scsipkg:rpm/almalinux/fence-agents-virshpkg:rpm/almalinux/fence-agents-vmware-restpkg:rpm/almalinux/fence-agents-vmware-soappkg:rpm/almalinux/fence-agents-wtipkg:rpm/almalinux/fence-agents-zvmpkg:rpm/almalinux/fence-virtpkg:rpm/almalinux/fence-virtdpkg:rpm/almalinux/fence-virtd-cpgpkg:rpm/almalinux/fence-virtd-libvirtpkg:rpm/almalinux/fence-virtd-multicastpkg:rpm/almalinux/fence-virtd-serialpkg:rpm/almalinux/fence-virtd-tcppkg:rpm/almalinux/ha-cloud-supportpkg:rpm/almalinux/python3.11-urllib3pkg:rpm/almalinux/python3.12-urllib3pkg:rpm/almalinux/python3-urllib3pkg:rpm/almalinux/resource-agentspkg:rpm/almalinux/resource-agents-aliyunpkg:rpm/almalinux/resource-agents-gcppkg:rpm/almalinux/resource-agents-pafpkg:rpm/opensuse/oci-cli&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-oci-sdk&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-urllib3_1&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-urllib3_1&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/python-urllib3_1&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-urllib3&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-urllib3&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/python-urllib3&distro=openSUSE%20Tumbleweedpkg:rpm/suse/python-urllib3_1&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-urllib3_1&distro=SUSE%20Linux%20Enterprise%20Server%2016.0pkg:rpm/suse/python-urllib3_1&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.4pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2012pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP4pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Server%2016.0pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Server%20LTSS%20Extended%20Security%2012%20SP5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Micro%206.0pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Micro%206.1pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Micro%206.2
< 2.11.0-r16+ 318 more
- (no CPE)range: < 2.11.0-r16
- (no CPE)range: < 2.11.0-r16
- (no CPE)range: < 2.11.0-r16
- (no CPE)range: < 2.11.0-r16
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 2.11.0-r9
- (no CPE)range: < 2.11.0-r9
- (no CPE)range: < 2.11.0-r9
- (no CPE)range: < 3.1.3-r1
- (no CPE)range: < 3.1.3-r1
- (no CPE)range: < 3.1.3-r1
- (no CPE)range: < 1.42.2-r2
- (no CPE)range: < 1.42.2-r2
- (no CPE)range: < 2.69.0-r2
- (no CPE)range: < 2025.10.2-r3
- (no CPE)range: < 2025.10.2-r3
- (no CPE)range: < 24.6.1-r33
- (no CPE)range: < 2.81.0-r1
- (no CPE)range: < 2.81.0-r1
- (no CPE)range: < 4.1048.200-r1
- (no CPE)range: < 4.1048.200-r1
- (no CPE)range: < 4.1048.200-r1
- (no CPE)range: < 3.16.2-r1
- (no CPE)range: < 3.16.2-r1
- (no CPE)range: < 0.0.162-r4
- (no CPE)range: < 2025.4.0-r7
- (no CPE)range: < 2025.4.0-r7
- (no CPE)range: < 2025.7.0-r2
- (no CPE)range: < 7.71.2-r22
- (no CPE)range: < 7.72.4-r22
- (no CPE)range: < 7.72.4-r22
- (no CPE)range: < 7.73.3-r13
- (no CPE)range: < 7.73.3-r13
- (no CPE)range: < 7.74.1-r15
- (no CPE)range: < 7.74.1-r15
- (no CPE)range: < 7.75.4-r7
- (no CPE)range: < 7.75.4-r7
- (no CPE)range: < 7.76.3-r15
- (no CPE)range: < 7.76.3-r15
- (no CPE)range: < 7.77.3-r6
- (no CPE)range: < 7.77.3-r6
- (no CPE)range: < 7.71.2-r15
- (no CPE)range: < 7.72.4-r15
- (no CPE)range: < 7.72.4-r15
- (no CPE)range: < 7.73.3-r12
- (no CPE)range: < 7.73.3-r12
- (no CPE)range: < 7.74.1-r12
- (no CPE)range: < 7.74.1-r12
- (no CPE)range: < 7.75.4-r5
- (no CPE)range: < 7.75.4-r5
- (no CPE)range: < 7.76.3-r12
- (no CPE)range: < 7.76.3-r12
- (no CPE)range: < 7.77.3-r7
- (no CPE)range: < 7.77.3-r7
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 1.48.0-r0
- (no CPE)range: < 7.5.0-r1
- (no CPE)range: < 2.3.0-r3
- (no CPE)range: < 2.1.4-r1
- (no CPE)range: < 0.19.0-r15
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r13
- (no CPE)range: < 0.19.0-r13
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 1.10.0-r8
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r0
- (no CPE)range: < 1.10.0-r6
- (no CPE)range: < 4.14.0-r6
- (no CPE)range: < 3.7.0-r1
- (no CPE)range: < 3.7.0-r1
- (no CPE)range: < 3.7.0-r1
- (no CPE)range: < 2.7.3-r2
- (no CPE)range: < 2025.4.1.2-r1
- (no CPE)range: < 0.9.2-r0
- (no CPE)range: < 9.12-r1
- (no CPE)range: < 9.12-r1
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 3.3.7-r2
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 0.0.1-r2
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 0.28.0-r1
- (no CPE)range: < 1.0.5-r5
- (no CPE)range: < 1.145.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 7.3.19-r16
- (no CPE)range: < 7.3.22-r0
- (no CPE)range: < 0.27.1-r1
- (no CPE)range: < 1.145.0-r0
- (no CPE)range: < 3.5.3-r4
- (no CPE)range: < 3.5.3-r4
- (no CPE)range: < 5.0.0-r9
- (no CPE)range: < 5.0.0-r9
- (no CPE)range: < 5.0.0-r9
- (no CPE)range: < 2.21.0-r2
- (no CPE)range: < 2.21.0-r2
- (no CPE)range: < 25.9.0_git20251112-r2
- (no CPE)range: < 25.9.0_git20251112-r2
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 3.1.4-r0
- (no CPE)range: < 1.42.2-r2
- (no CPE)range: < 2.81.0-r1
- (no CPE)range: < 2.81.0-r1
- (no CPE)range: < 0.0.162-r4
- (no CPE)range: < 2025.4.0-r7
- (no CPE)range: < 2025.4.0-r7
- (no CPE)range: < 2025.7.0-r2
- (no CPE)range: < 7.72.4-r22
- (no CPE)range: < 7.72.4-r22
- (no CPE)range: < 7.73.3-r13
- (no CPE)range: < 7.73.3-r13
- (no CPE)range: < 7.74.1-r15
- (no CPE)range: < 7.74.1-r15
- (no CPE)range: < 7.75.4-r7
- (no CPE)range: < 7.75.4-r7
- (no CPE)range: < 7.76.3-r15
- (no CPE)range: < 7.76.3-r15
- (no CPE)range: < 7.77.3-r6
- (no CPE)range: < 7.77.3-r6
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 1.48.0-r0
- (no CPE)range: < 7.5.0-r1
- (no CPE)range: < 2.3.0-r3
- (no CPE)range: < 2.1.4-r1
- (no CPE)range: < 0.19.0-r15
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r14
- (no CPE)range: < 0.19.0-r13
- (no CPE)range: < 0.19.0-r13
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 0.16.0-r6
- (no CPE)range: < 1.10.0-r8
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r4
- (no CPE)range: < 2.15.0-r0
- (no CPE)range: < 1.10.0-r6
- (no CPE)range: < 3.7.0-r1
- (no CPE)range: < 3.7.0-r1
- (no CPE)range: < 3.7.0-r1
- (no CPE)range: < 0.9.2-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 3.10.0-r14
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 2026.6.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 26.1.1-r0
- (no CPE)range: < 0.28.0-r1
- (no CPE)range: < 1.145.0-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 2.6.1-r0
- (no CPE)range: < 7.3.19-r16
- (no CPE)range: < 7.3.22-r0
- (no CPE)range: < 1.145.0-r0
- (no CPE)range: < 5.0.0-r9
- (no CPE)range: < 5.0.0-r9
- (no CPE)range: < 5.0.0-r9
- (no CPE)range: < 2.21.0-r2
- (no CPE)range: >= 1.24, < 2.6.0
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 4.10.0-98.el9_7.4
- (no CPE)range: < 1.26.12-5.el9_7.1
- (no CPE)range: < 1.26.19-1.el9_7.1
- (no CPE)range: < 1.26.19-2.el10_1.1
- (no CPE)range: < 4.9.0-54.el8_10.27
- (no CPE)range: < 4.9.0-54.el8_10.27
- (no CPE)range: < 4.9.0-54.el8_10.27
- (no CPE)range: < 4.9.0-54.el8_10.27
- (no CPE)range: < 3.76.2-1.1
- (no CPE)range: < 2.168.3-1.1
- (no CPE)range: < 1.26.18-150600.3.6.1
- (no CPE)range: < 1.26.20-160000.3.1
- (no CPE)range: < 1.26.20-5.1
- (no CPE)range: < 2.0.7-150400.7.27.1
- (no CPE)range: < 2.5.0-160000.4.1
- (no CPE)range: < 2.6.2-1.1
- (no CPE)range: < 1.26.18-150600.3.6.1
- (no CPE)range: < 1.26.20-160000.3.1
- (no CPE)range: < 1.26.20-160000.3.1
- (no CPE)range: < 1.25.10-150300.4.21.1
- (no CPE)range: < 1.25.10-150300.4.21.1
- (no CPE)range: < 1.25.10-150300.4.21.1
- (no CPE)range: < 1.25.10-150300.4.21.1
- (no CPE)range: < 1.25.10-150300.4.21.1
- (no CPE)range: < 1.25.10-3.48.4
- (no CPE)range: < 2.0.7-150400.7.27.1
- (no CPE)range: < 2.0.7-150400.7.27.1
- (no CPE)range: < 2.5.0-160000.4.1
- (no CPE)range: < 2.5.0-160000.4.1
- (no CPE)range: < 1.25.10-3.48.4
- (no CPE)range: < 2.1.0-5.1
- (no CPE)range: < 2.1.0-slfo.1.1_4.1
- (no CPE)range: < 2.5.0-160000.4.1
Patches
Vulnerability mechanics
References
4- github.com/advisories/GHSA-gm62-xv2j-4w53ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2025-66418ghsaADVISORY
- github.com/urllib3/urllib3/commit/24d7b67eac89f94e11003424bcf0d8f7b72222a8ghsax_refsource_MISCWEB
- github.com/urllib3/urllib3/security/advisories/GHSA-gm62-xv2j-4w53ghsax_refsource_CONFIRMWEB
News mentions
0No linked articles in our index yet.