logo

Database

Sensitive information sent insecurely In requests

Description

Exposure of Sensitive Information to an Unauthorized Actor in Requests Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Component
Affected version
Patched versions
FLAT-3GKEI – Vulnerability | Fluid Attacks Database