LOW 3.8 PyPI

[PUNCIA] [CWE-319] Cleartext Transmission of Sensitive Information via HTTP urls in `API_URLS`

GHSA-rwcj-7jjp-4w38 · CVE-2024-41124 · PYSEC-2026-1809

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

Impact

API_URLS is utilizing HTTP instead of HTTPS for communication that can lead to issues like Eavesdropping, Data Tampering, Unauthorized Data Access & MITM Attacks.

References

ISSUE
PATCH

Ready to move

Start Securing

Free, no credit card | First findings in minutes