Executive brief
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.
Affected products
- PyPI requests
Junglewise Threat Intelligence
CVE-2014-1830 · Severity: medium · CVSS 4 · Published 2014-10-15
Technologies: requests (PyPI). Vendors: PyPI.
Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.