Junglewise Threat Intelligence

PYSEC-2019-62 - In the urllib3 library through 1.24.1 for Python, CRLF injection is possible if the attacker controls the request parameter.

Severity: info · Published 2019-04-15

Technologies: urllib3 (PyPI). Vendors: PyPI.

Executive brief

In the urllib3 library through 1.24.1 for Python, CRLF injection is possible if the attacker controls the request parameter.

Affected products

  • PyPI urllib3

Related threats