rpm package
suse/python-requests&distro=SUSE Linux Enterprise Micro 5.4
pkg:rpm/suse/python-requests&distro=SUSE%20Linux%20Enterprise%20Micro%205.4
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-47081 | Med | 5.3 | < 2.25.1-150300.3.15.1 | 2.25.1-150300.3.15.1 | Jun 9, 2025 | Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc | |
| CVE-2024-35195 | Med | 5.6 | < 2.25.1-150300.3.9.1 | 2.25.1-150300.3.9.1 | May 20, 2024 | Requests is a HTTP library. Prior to 2.32.0, when making requests through a Requests `Session`, if the first request is made with `verify=False` to disable cert verification, all subsequent requests to the same host will continue to ignore cert verification regardless of changes | |
| CVE-2023-32681 | — | < 2.24.0-150300.3.3.1 | 2.24.0-150300.3.3.1 | May 26, 2023 | Requests is a HTTP library. Since Requests 2.3.0, Requests has been leaking Proxy-Authorization headers to destination servers when redirected to an HTTPS endpoint. This is a product of how we use `rebuild_proxies` to reattach the `Proxy-Authorization` header to requests. For HTT |
- affected < 2.25.1-150300.3.15.1fixed 2.25.1-150300.3.15.1
Requests is a HTTP library. Due to a URL parsing issue, Requests releases prior to 2.32.4 may leak .netrc credentials to third parties for specific maliciously-crafted URLs. Users should upgrade to version 2.32.4 to receive a fix. For older versions of Requests, use of the .netrc
- affected < 2.25.1-150300.3.9.1fixed 2.25.1-150300.3.9.1
Requests is a HTTP library. Prior to 2.32.0, when making requests through a Requests `Session`, if the first request is made with `verify=False` to disable cert verification, all subsequent requests to the same host will continue to ignore cert verification regardless of changes
- CVE-2023-32681May 26, 2023affected < 2.24.0-150300.3.3.1fixed 2.24.0-150300.3.3.1
Requests is a HTTP library. Since Requests 2.3.0, Requests has been leaking Proxy-Authorization headers to destination servers when redirected to an HTTPS endpoint. This is a product of how we use `rebuild_proxies` to reattach the `Proxy-Authorization` header to requests. For HTT