Safety vulnerability ID: 66764
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Tasos-apiauth version 0.1.1 has updated its fastapi dependency to mitigate the CVE-2024-24762 vulnerability, which arises from its starlette dependency and the python-multipart package's susceptibility to a Content-Type Header ReDoS attack.
Latest version: 0.2.1
A re-usable FastAPI library that implements authentication, users, groups and permission handling.
Added
- Changelog file
Changed
- Updated URLs in `pyproject.toml` file
- Added a mypy ignore for missing import for the `httpx` package
Security
- Updated `fastapi` in order to patch `CVE-2024-24762` introduced by dependency `starlette`: python-multipart vulnerable to Content-Type Header ReDoS
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application