Page 1 of 1

Python Parsing Error Enabling Bypass CVE-2023-24329

Posted: Mon Feb 03, 2025 10:19 am
by Shane1145
urllib.parse is a very basic and widely used basic URL parsing function in various applications.

Description
An issue in the urllib.parse component of Python before v3.11 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters.

https://www.kb.cert.org/vuls/id/127587