Vulnerability Database
Blog
FAQ
Docs
PYSEC-2018-56
See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/mitmproxy/PYSEC-2018-56.yaml
JSON Data
https://api.test.osv.dev/v1/vulns/PYSEC-2018-56
Aliases
CVE-2018-14505
GHSA-6m53-c78q-7qmg
Published
2018-07-22T18:29:00Z
Modified
2023-11-01T04:48:59.069964Z
Summary
[none]
Details
mitmweb in mitmproxy v4.0.3 allows DNS Rebinding attacks, related to tools/web/app.py.
References
https://github.com/mitmproxy/mitmproxy/pull/3243
https://github.com/mitmproxy/mitmproxy/issues/3234
https://github.com/advisories/GHSA-6m53-c78q-7qmg
Affected packages
PyPI
/
mitmproxy
Package
Name
mitmproxy
View open source insights on deps.dev
Purl
pkg:pypi/mitmproxy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
4.0.4
Affected versions
0.*
0.8
0.8.1
0.9
0.9.1
0.9.2
0.10
0.10.1
0.11
0.11.1
0.11.2
0.11.3
0.12.0
0.12.1
0.13
0.14.0
0.15
0.16
0.17
0.18.1
0.18.2
0.18.3
1.*
1.0.0
1.0.1
1.0.2
2.*
2.0.0
2.0.1
2.0.2
3.*
3.0.0
3.0.1
3.0.2
3.0.3
3.0.4
4.*
4.0.0
4.0.1
4.0.3
PYSEC-2018-56 - OSV