Headline
GHSA-h8pj-cxx2-jfg2: Improper Input Validation in httpx
Encode OSS httpx <=1.0.0.beta0 is affected by improper input validation in httpx.URL
, httpx.Client
and some functions using httpx.URL.copy_with
.
Improper Input Validation in httpx
Critical severity GitHub Reviewed Published Apr 29, 2022 • Updated May 10, 2022
Related news
Vulnerability in the Sun ZFS Storage Appliance product of Oracle Systems (component: Core). The supported version that is affected is 8.8.60. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Sun ZFS Storage Appliance. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Sun ZFS Storage Appliance. CVSS 3.1 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).
Encode OSS httpx < 0.23.0 is affected by improper input validation in `httpx.URL`, `httpx.Client` and some functions using `httpx.URL.copy_with`.