CVE-2024-11168 | Python CPython up to 3.11.3/3.12.0b0 URL Parser urllib.parse.urlsplit urllib.parse.urlsplit/urlparse server-side request forgery (ID 103848 / Nessus ID 211470)
A vulnerability was found in Python CPython up to 3.11.3/3.12.0b0. It has been declared as problematic. This vulnerability affects the function urllib.parse.urlsplit/urlparse in the library urllib.parse.urlsplit of the component URL Parser. The manipulation leads to server-side request forgery.
This vulnerability was named CVE-2024-11168. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.