CVE-2022-0430

LOW2.4EPSS 0.32%

Exposure of Sensitive information in httpie

發布日:2022/3/16修改日:2024/11/19
也稱為:GHSA-6pc9-xqrg-wfqwPYSEC-2022-167

描述

httpie is a modern, user-friendly command-line HTTP client for the API era. Prior to version 3.1.0, all cookies saved to session storage are supercookies. At this time, there is no known workaround. Users are recommended to update to version 3.1.0.

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 4.0CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
osvCVSS 3.1LOW2.4CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N

參考連結(7)