PyPi: Cliboa

CVE-2021-33503

Transitive

Safety vulnerability ID: 42681

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Jun 29, 2021 Updated at Mar 23, 2024
Scan your Python projects for vulnerabilities →

Advisory

Cliboa 2.0.0b0 updates its dependency 'urllib3' to v1.26.5 to include a security fix.

Affected package

cliboa

Latest version: 2.4.1b0

application framework for ETL(ELT) processing

Affected versions

Fixed versions

Vulnerability changelog

What's Changed
* [8/13〆] add python3.8 and 3.9 to GitHubActions by cocoa-maemae in https://github.com/BrainPad/cliboa/pull/229
* make unavailable "injection" by bo-naoki-okamoto in https://github.com/BrainPad/cliboa/pull/226
* Make CsvColumnConcat class by nissy0409240 in https://github.com/BrainPad/cliboa/pull/227
* [FIX] CsvColumnExtract erase all csv columns by bo-naoki-okamoto in https://github.com/BrainPad/cliboa/pull/231
* Rename to cliboa by bo-naoki-okamoto in https://github.com/BrainPad/cliboa/pull/234
* Fix message typo by Wisteria30 in https://github.com/BrainPad/cliboa/pull/238
* Add no header option for CsvConvert class by nissy0409240 in https://github.com/BrainPad/cliboa/pull/237
* Replace Panda with Big Query by alvinend in https://github.com/BrainPad/cliboa/pull/245
* Make CsvColumnHash class by chiru1221 in https://github.com/BrainPad/cliboa/pull/246
* Add JsonScenarioParser by Wisteria30 in https://github.com/BrainPad/cliboa/pull/248
* A module to transfer query results of BigQuery table to an another Bigquery table by alvinend in https://github.com/BrainPad/cliboa/pull/249
* Add Execute Shell Step by alvinend in https://github.com/BrainPad/cliboa/pull/244
* [〆9/15] fix mangling by cocoa-maemae in https://github.com/BrainPad/cliboa/pull/235
* [〆9/15] add black format check to ci by cocoa-maemae in https://github.com/BrainPad/cliboa/pull/263
* feedparser version up by nissy0409240 in https://github.com/BrainPad/cliboa/pull/267
* Python 3.5 is no longer supported by nissy0409240 in https://github.com/BrainPad/cliboa/pull/269
* Add new parallel notation by Wisteria30 in https://github.com/BrainPad/cliboa/pull/259
* Bump urllib3 from 1.25.11 to 1.26.5 in /cliboa/template by dependabot in https://github.com/BrainPad/cliboa/pull/262
* Bump pyyaml from 5.3.1 to 5.4 in /cliboa/template by dependabot in https://github.com/BrainPad/cliboa/pull/261
* [〆10/6] Delete deprecated logics by cocoa-maemae in https://github.com/BrainPad/cliboa/pull/275
* [なる早]Beta2.0.0 release by cocoa-maemae in https://github.com/BrainPad/cliboa/pull/279
* Add CsvColumnSelect class by nissy0409240 in https://github.com/BrainPad/cliboa/pull/265
* Remove unused libraries by nissy0409240 in https://github.com/BrainPad/cliboa/pull/271
* Remove CircleCI settings file by nissy0409240 in https://github.com/BrainPad/cliboa/pull/274
* Additional fix for ver 2.0.0.0 by bo-naoki-okamoto in https://github.com/BrainPad/cliboa/pull/284
* Bump pyyaml from 5.3.1 to 5.4 in /cliboa/template by dependabot in https://github.com/BrainPad/cliboa/pull/286
* Bump urllib3 from 1.25.11 to 1.26.5 in /cliboa/template by dependabot in https://github.com/BrainPad/cliboa/pull/287

New Contributors
* nissy0409240 made their first contribution in https://github.com/BrainPad/cliboa/pull/227
* Wisteria30 made their first contribution in https://github.com/BrainPad/cliboa/pull/238
* alvinend made their first contribution in https://github.com/BrainPad/cliboa/pull/245
* chiru1221 made their first contribution in https://github.com/BrainPad/cliboa/pull/246

**Full Changelog**: https://github.com/BrainPad/cliboa/compare/1.3.7beta...v2.0.0beta

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application

Severity Details

CVSS Base Score

HIGH 7.5

CVSS v3 Details

HIGH 7.5
Attack Vector (AV)
NETWORK
Attack Complexity (AC)
LOW
Privileges Required (PR)
NONE
User Interaction (UI)
NONE
Scope (S)
UNCHANGED
Confidentiality Impact (C)
NONE
Integrity Impact (I)
NONE
Availability Availability (A)
HIGH

CVSS v2 Details

MEDIUM 5.0
Access Vector (AV)
NETWORK
Access Complexity (AC)
LOW
Authentication (Au)
NONE
Confidentiality Impact (C)
NONE
Integrity Impact (I)
NONE
Availability Impact (A)
PARTIAL