Description

urllib3 is a user-friendly HTTP client library for Python. Prior to 2.5.0, it is possible to disable redirects for all requests by instantiating a PoolManager and specifying retries in a way that disable redirects. By default, requests and botocore users are not affected. An application attempting to mitigate SSRF or open redirect vulnerabilities by disabling redirects at the PoolManager level will remain vulnerable. This issue has been patched in version 2.5.0.

INFO

Published Date :

2025-06-19T01:08:00.340Z

Last Modified :

2025-12-22T18:44:17.668Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-50181 vulnerability.

Vendors Products
Python
  • Urllib3
Urllib3
  • Urllib3

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact