13 Total advisories
13 Vulnerabilities
0 Malware
Dependency scanning
Check whether requests is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
UNKNOWN
CVE-2015-2296
CVE-2015-2296
MEDIUM 4.4
CVE-2026-25645
Requests has Insecure Temp File Reuse in its extract_zipped_paths() utility function
MEDIUM 5.3
CVE-2024-47081
Requests vulnerable to .netrc credentials leak via malicious URLs
MEDIUM 6.1
CVE-2023-32681
Unintended leak of Proxy-Authorization header in requests
MEDIUM 5.6
CVE-2024-35195
Requests `Session` object does not verify requests after making first request with verify=False
UNKNOWN
CVE-2015-2296
Python Requests Session Fixation
MEDIUM 5.3
CVE-2014-1829
Exposure of Sensitive Information to an Unauthorized Actor in Requests
UNKNOWN
CVE-2014-1830
Exposure of Sensitive Information to an Unauthorized Actor in Requests
HIGH 7.5
CVE-2018-18074
Insufficiently Protected Credentials in Requests
UNKNOWN
CVE-2023-32681
CVE-2023-32681
UNKNOWN
CVE-2018-18074
CVE-2018-18074
UNKNOWN
CVE-2014-1830
CVE-2014-1830
UNKNOWN
CVE-2014-1829
CVE-2014-1829
Browse more PyPI advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes