CVE-2019-10751
Last modified
CVE-2019-10751 is a vulnerability of currently unknown severity. All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to a crafted URL pointing to a server in his or hers control.. EPSS estimates a 2.04% chance of exploitation in the next 30 days.
Description
All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to a crafted URL pointing to a server in his or hers control.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Httpie | Httpie | All versions |
References
- https://github.com/jakubroztocil/httpie/releases/tag/1.0.3Release Notes, Third Party Advisory
- https://snyk.io/vuln/SNYK-PYTHON-HTTPIE-460107Exploit, Third Party Advisory
- https://github.com/jakubroztocil/httpie/releases/tag/1.0.3Release Notes, Third Party Advisory
- https://snyk.io/vuln/SNYK-PYTHON-HTTPIE-460107Exploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-10751?
How severe is CVE-2019-10751?
How do I fix CVE-2019-10751?
Are you affected by CVE-2019-10751?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
