boto3@0.0.22 vulnerabilities

The AWS SDK for Python

  • latest version

    1.37.37

  • latest non vulnerable version

  • first published

    10 years ago

  • latest version published

    2 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the boto3 package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • L
    Information Exposure

    boto3 is the AWS SDK for Python.

    Affected versions of this package are vulnerable to Information Exposure due to logging all of the bytes uploaded when the logger is set to the INFO level.

    How to fix Information Exposure?

    Upgrade boto3 to version 1.4.5 or higher.

    [,1.4.5)