Vulnerabilities > CVE-2023-24622 - Server-Side Request Forgery (SSRF) vulnerability in Includesecurity Safeurl-Python 1.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
isInList in the safeurl-python package before 1.2 for Python has an insufficiently restrictive regular expression for external domains, leading to SSRF.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |