Safety vulnerability ID: 36602
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Python-nomad 1.0.1 updates 'requests` to v2.20.0 to include a security fix.
Latest version: 2.0.1
Client library for Hashicorp Nomad
The Requests package through 2.19.1 before 2018-09-14 for Python sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect, which makes it easier for remote attackers to discover credentials by sniffing the network.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application