httpie records
4 published records for vendor httpie.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-295 Improper Certificate Validation1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2019-10751No exploit | All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary filehttpie · httpie · CWE-601 | High8.8 | — | 2.0% | Aug 23, 2019 |
29Monitor | CVE-2023-48052No exploit | Missing SSL certificate validation in HTTPie v3.2.2 allows attackers to eavesdrop on communications between the host and server via a man-inhttpie · httpie · CWE-295 | High7.4 | — | 0.3% | Nov 16, 2023 |
26Monitor | CVE-2022-24737No exploit | Exposure of Sensitive Information to an Unauthorized Actor in httpiehttpie · httpie · CWE-200 | Medium6.5 | — | 1.7% | Mar 7, 2022 |
21Monitor | CVE-2022-0430No exploit | Exposure of Sensitive Information to an Unauthorized Actor in httpie/httpiehttpie · httpie · CWE-200 | Medium5.3 | — | 1.3% | Mar 15, 2022 |
- CVE-2019-1075136Monitor
All versions of the HTTPie package prior to version 1.0.3 are vulnerable to Open Redirect that allows an attacker to write an arbitrary file
HighCVSS 8.8No exploitEPSS 2%httpie · httpieAug 23, 2019
- CVE-2023-4805229Monitor
Missing SSL certificate validation in HTTPie v3.2.2 allows attackers to eavesdrop on communications between the host and server via a man-in
HighCVSS 7.4No exploitEPSS 0%httpie · httpieNov 16, 2023
- CVE-2022-2473726Monitor
Exposure of Sensitive Information to an Unauthorized Actor in httpie
MediumCVSS 6.5No exploitEPSS 2%httpie · httpieMar 7, 2022
- CVE-2022-043021Monitor
Exposure of Sensitive Information to an Unauthorized Actor in httpie/httpie
MediumCVSS 5.3No exploitEPSS 1%httpie · httpieMar 15, 2022