24.9.1
12 years ago
5 months ago
Known vulnerabilities in the treq package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
treq is a High-level Twisted HTTP Client API Affected versions of this package are vulnerable to Information Exposure when Treq's request methods ( Such cookies are not bound to a single domain and are therefore sent to every domain ("supercookies"). This can potentially cause sensitive information to leak upon an HTTP redirect to a different domain., e.g. should How to fix Information Exposure? Upgrade | [,22.1.0) |