PyPI: telebot-components
CVE-2023-49083
Safety vulnerability ID: SFTY-20231129-75737
Safety legacy ID: pyup.io-65367
Telebot-components version 0.11.2 updates its cryptography version requirement to be at least 41.0.6 but less than 43.0.0, in response to security concerns outlined in CVE-2023-49083. https://github.com/bots-against-war/telebot-components/commit/378539e8150a42d5356a467426b1d98d0730b7b4
Overview
Telebot-components version 0.11.2 updates its cryptography version requirement to be at least 41.0.6 but less than 43.0.0, in response to security concerns outlined in CVE-2023-49083. https://github.com/bots-against-war/telebot-components/commit/378539e8150a42d5356a467426b1d98d0730b7b4
Advisory
Telebot-components version 0.11.2 updates its cryptography version requirement to be at least 41.0.6 but less than 43.0.0, in response to security concerns outlined in CVE-2023-49083. https://github.com/bots-against-war/telebot-components/commit/378539e8150a42d5356a467426b1d98d0730b7b4
How to Fix
Mitigation and Workarounds
---
Vulnerable Functions
Functions linked to known vulnerabilities.
Verified by Safety
Our Cybersecurity Intelligence Team reviewed this vulnerability. We combine public data with our own research to find issues not yet reported to public sources.
Learn more