PyPi: Obsei

CVE-2021-43818

Transitive

Safety vulnerability ID: 44902

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Dec 13, 2021 Updated at Nov 29, 2024
Scan your Python projects for vulnerabilities →

Advisory

Obsei 0.0.11 updates its dependency 'lxml' to v4.7.1 to include a security fix.

Affected package

obsei

Latest version: 0.0.15

Obsei is an automation tool for text analysis need

Affected versions

Fixed versions

Vulnerability changelog

:star: Major Highlights
- Youtube: Now fetch Youtube video comments (via Scrapper)
- License: Removed all strong copyleft dependencies
- Demo: Improved demo UI along with adding more detailed logging
- Few bug fixes, dependencies upgrade, CI enhancements and fixing security issue

🚀 Features

- Youtube integration via scrapper lalitpagaria (224)
- Removing third party dependencies with strong copyleft licenses lalitpagaria (221)
- Enhancing demo UI lalitpagaria (214)

🐛 Bug Fixes

- Fixing typing-extensions dependency issue on python 3.7 lalitpagaria (217)
- Google News max result fix tanish36 (211)
- Bug: Updating long\_term\_token param to access\_token for facebook source. lalitpagaria (210)

🧰 Maintenance

- Updated the README kuutsav (222)
- Fix security issue with lxml lalitpagaria (219)
- Dep upgrade (to address Dependabot for NLTK as well) lalitpagaria (215)
- Enabling CI caching lalitpagaria (213)

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application

Severity Details

CVSS Base Score

HIGH 7.1

CVSS v3 Details

HIGH 7.1
Attack Vector (AV)
NETWORK
Attack Complexity (AC)
LOW
Privileges Required (PR)
NONE
User Interaction (UI)
REQUIRED
Scope (S)
CHANGED
Confidentiality Impact (C)
LOW
Integrity Impact (I)
LOW
Availability Availability (A)
LOW

CVSS v2 Details

MEDIUM 6.8
Access Vector (AV)
NETWORK
Access Complexity (AC)
MEDIUM
Authentication (Au)
NONE
Confidentiality Impact (C)
PARTIAL
Integrity Impact (I)
PARTIAL
Availability Impact (A)
PARTIAL