CVE-2025-23217
- EPSS 1.19%
- Veröffentlicht 06.02.2025 18:15:32
- Zuletzt bearbeitet 06.02.2025 18:15:32
mitmproxy is a interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers and mitmweb is a web-based interface for mitmproxy. In mitmweb 11.1.1 and below, a malicious client can use mitmweb's proxy server (bound t...
CVE-2022-24766
- EPSS 0.79%
- Veröffentlicht 21.03.2022 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:51:03
mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.4 and below, a malicious client or server is able to perform HTTP request smuggling attacks through mitmproxy. This means that a malicious client/server could smuggle a...
CVE-2021-39214
- EPSS 0.19%
- Veröffentlicht 16.09.2021 15:15:07
- Zuletzt bearbeitet 21.11.2024 06:18:55
mitmproxy is an interactive, SSL/TLS-capable intercepting proxy. In mitmproxy 7.0.2 and below, a malicious client or server is able to perform HTTP request smuggling attacks through mitmproxy. This means that a malicious client/server could smuggle a...
CVE-2018-14505
- EPSS 0.34%
- Veröffentlicht 22.07.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:49:13
mitmweb in mitmproxy v4.0.3 allows DNS Rebinding attacks, related to tools/web/app.py.