Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3 allows remote attackers to conduct session fixation attacks via a cookie without a host value in a redirect.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Requests 安全漏洞
Vulnerability Description
Requests(也称python-requests)是软件开发者Kenneth Reitz和其他维护贡献者共同开发的一个采用Python语言编写的HTTP客户端库。 Requests 2.1.0版本至2.5.3版本的sessions.py文件中的‘resolve_redirects’函数存在安全漏洞。远程攻击者可借助特制的cookie利用该漏洞实施会话固定攻击。
CVSS Information
N/A
Vulnerability Type
N/A