urllib3-future is vulnerable to Inadequate Encryption Strength
50
Medium Risk
Affected versions of this package allow the use of insecure TLS 1.0 and TLS 1.1 protocols, exposing communications to man-in-the-middle attacks. This vulnerability compromises the confidentiality and integrity of data by enabling attackers to intercept and manipulate the data being transmitted.
You are affected if you are using a version that falls within the vulnerable range.
urllib3-future is vulnerable to Inadequate Encryption Strength in versions 2.0.931 - 2.11.907.
Upgrade the urllib3-future library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant