Safety vulnerability ID: 52933
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Safeurl-python 1.2 includes a fix for CVE-2023-24622: isInList in the safeurl-python package before 1.2 for Python has an insufficiently restrictive regular expression for external domains, leading to SSRF.
https://github.com/IncludeSecurity/safeurl-python/security/advisories/GHSA-jgh8-vchw-q3g7
Latest version: 1.3
SafeURL is a library that aids developers in protecting against a class of vulnerabilities known as Server Side Request Forgery.
isInList in the safeurl-python package before 1.2 for Python has an insufficiently restrictive regular expression for external domains, leading to SSRF. See CVE-2023-24622.
MISC:https://github.com/IncludeSecurity/safeurl-python/security/advisories/GHSA-jgh8-vchw-q3g7: https://github.com/IncludeSecurity/safeurl-python/security/advisories/GHSA-jgh8-vchw-q3g7
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application