HIGH7.4
PYSEC-2023-242
Details
Missing SSL certificate validation in HTTPie v3.2.2 allows attackers to eavesdrop on communications between the host and server via a man-in-the-middle attack.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/httpie
Introduced in:
0No fixed version published yet for httpie (pip). Pin to a known-safe version or switch to an alternative.