PyPI: telebot-components

CVE-2023-49083

Safety vulnerability ID: SFTY-20231129-75737

Safety legacy ID: pyup.io-65367

Telebot-components version 0.11.2 updates its cryptography version requirement to be at least 41.0.6 but less than 43.0.0, in response to security concerns outlined in CVE-2023-49083. https://github.com/bots-against-war/telebot-components/commit/378539e8150a42d5356a467426b1d98d0730b7b4

Created at: May 22, 2026Updated at: May 22, 2026

Overview

Telebot-components version 0.11.2 updates its cryptography version requirement to be at least 41.0.6 but less than 43.0.0, in response to security concerns outlined in CVE-2023-49083. https://github.com/bots-against-war/telebot-components/commit/378539e8150a42d5356a467426b1d98d0730b7b4

Advisory

Telebot-components version 0.11.2 updates its cryptography version requirement to be at least 41.0.6 but less than 43.0.0, in response to security concerns outlined in CVE-2023-49083. https://github.com/bots-against-war/telebot-components/commit/378539e8150a42d5356a467426b1d98d0730b7b4

Affected Package

Affecting telebot-components package, versions
<0.11.2

Also affects

---

How to Fix

Upgrade
telebot-components
to
0.11.2
or higher.

Mitigation and Workarounds

---

Vulnerable Functions

Functions linked to known vulnerabilities.

Vulnerable function data is available for Enterprise customers

Book a call with us to see Safety in action.

Safety

Verified by Safety

Our Cybersecurity Intelligence Team reviewed this vulnerability. We combine public data with our own research to find issues not yet reported to public sources.

Learn more