Loading...
Loading...
The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3 allows remote attackers to conduct session fixation attacks via a cookie without a host value in a redirect.
March 18, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2015-2296
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.