oauthlib@0.5.1 vulnerabilities

A generic, spec-compliant, thorough implementation of the OAuth request-signing logic

  • latest version

    3.2.2

  • latest non vulnerable version

  • first published

    12 years ago

  • latest version published

    2 years ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the oauthlib package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Information Exposure

    Affected versions of oauthlib are vulnerable to Information Exposure Through Debug Log Files which happend because the debug log printed password to the log files.

    How to fix Information Exposure?

    Upgrade oauthlib to version 0.7.0 or higher.

    [,0.7.0)