CVE-2024-47081 - log back

CVE-2024-47081 edited at 03 Jun 2025 20:51:15
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Information disclosure
Description
+ The PSF requests library leaks .netrc credentials to third parties due to incorrect URL processing under specific conditions.
References
+ https://seclists.org/fulldisclosure/2025/Jun/2
Notes
+ As a workaround, clients may explicitly specify the credentials used on every API call to disable .netrc access.
CVE-2024-47081 created at 03 Jun 2025 20:46:43
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes