[issue32084] [Security] http.server can be abused to redirect to (almost) arbitrary URL

Ned Deily report at bugs.python.org
Fri May 21 19:10:46 EDT 2021


Ned Deily <nad at python.org> added the comment:

This looks like a duplicate of Issue43223 which has a PR in progress.

----------
nosy: +ned.deily
resolution:  -> duplicate
stage:  -> resolved
status: open -> closed
superseder:  -> [security] http.server: Open Redirection if the URL path starts with //

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue32084>
_______________________________________


More information about the Python-bugs-list mailing list