Seth Michael Larson
20 exploits
Active since Mar 2020
webbrowser.open() allows leading dashes in URLs
CVSS 3.3
Python tarfile - Path Traversal
Python Urllib3 < 1.25.9 - Injection
CVSS 6.5
Python Urllib3 < 1.25.7 - Denial of Service
CVSS 7.5
urllib3 <1.26.5 - DoS
CVSS 7.5
urllib3 <1.26.17, <2.0.5 - Info Disclosure
CVSS 5.9
socket - Connection Race
CPython - ReDoS
CVSS 7.5
Python - SSRF
Email Client - Info Disclosure
urllib < - SSRF
imaplib - Command Injection
poplib - Command Injection
Python TarFile < - Path Traversal
CVSS 7.5
CPython TarFile - Incorrect Extraction with errorlevel=0
CVSS 7.5
urllib3 <2.5.0 - SSRF
CVSS 5.3
http - Cookie Injection
Product < Version - SSRF
Email module - Header Injection
Pypi Pip < 26.0 - Path Traversal