CVE-2014-1829

Requests <2.3.0 - Info Disclosure

Title source: llm

Description

Requests (aka python-requests) before 2.3.0 allows remote servers to obtain a netrc password by reading the Authorization header in a redirected request.

Scores

EPSS 0.0050
EPSS Percentile 65.4%

Classification

CWE
CWE-200
Status draft

Affected Products (5)

debian/debian_linux
python/requests < 2.2.1
canonical/ubuntu_linux
mageia/mageia
pypi/requests < 2.3.0PyPI

Timeline

Published Oct 15, 2014
Tracked Since Feb 18, 2026