Executive brief
Scrapy authorization header leakage on cross-domain redirect
Affected products
- PyPI scrapy
Junglewise Threat Intelligence
CVE-2024-3574 · Severity: low · CVSS 3.1 · Published 2026-07-07
Technologies: scrapy (PyPI). Vendors: PyPI.
Scrapy authorization header leakage on cross-domain redirect