Update to 2.32.4 Security fix for CVE-2024-47081: .netrc credentials leak via malicious URLs
Most existing Python modules for sending HTTP requests are extremely verbose and
cumbersome. Python\u2019s built-in urllib2 module provides most of the HTTP
capabilities you should need, but the API is thoroughly broken. This library is
designed to make HTTP requests easy for developers.
Update Information:
Update to 2.32.4 Security fix for CVE-2024-47081: .netrc credentials leak via malicious URLs
* Mon Jul 7 2025 Miro Hron\u010dok - 2.32.3-5
- Backport test-cert. fixes for urllib3 2.4.0 compatibility
[ 1 ] Bug #2371255 - python-requests-2.32.4 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2371255
[ 2 ] Bug #2375886 - CVE-2024-47081 python-requests: Requests vulnerable to .netrc credentials leak via malicious URLs [fedora-42]
https://bugzilla.redhat.com/show_bug.cgi?id=2375886
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-87207b946a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
Get the latest Linux and open source security news straight to your inbox.