Python urllib HTTPPasswordMgr Credentials Scope Bypass by Scheme
Security Advisory
GHSA-h3gf-457f-5g8h
Medium
Python
Affected:
- Python urllib.request.HTTPPasswordMgr < 3.14.1
- Python urllib.request.HTTPPasswordMgrWithPriorAuth < 3.14.1
Fixed in:
- 3.14.1
- 3.13.2
- 3.12.9
- 3.11.11
Referenced CVEs:
CVE-2026-15806 · 6.0
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.