Candidate: CVE-2022-0577 PublicDate: 2022-03-02 04:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0577 https://huntr.dev/bounties/3da527b1-2348-4f69-9e88-2e11a96ac585 https://github.com/scrapy/scrapy/commit/8ce01b3b76d4634f55067d6cfdf632ec70ba304a Description: Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository scrapy/scrapy prior to 2.6.1. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N [6.5 MEDIUM] Patches_python-scrapy: upstream_python-scrapy: needs-triage trusty_python-scrapy: ignored (out of standard support) xenial_python-scrapy: ignored (out of standard support) bionic_python-scrapy: needs-triage focal_python-scrapy: needs-triage impish_python-scrapy: needs-triage jammy_python-scrapy: needs-triage devel_python-scrapy: needs-triage