Vulnerability Details CVE-2017-16026
Request is an http client. If a request is made using ```multipart```, and the body type is a ```number```, then the specified number of non-zero memory is passed in the body. This affects Request >=2.2.6 <2.47.0 || >2.51.0 <=2.67.0.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.3%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 7.1
Products affected by CVE-2017-16026
-
cpe:2.3:a:request_project:request:2.17.0
-
cpe:2.3:a:request_project:request:2.18.0
-
cpe:2.3:a:request_project:request:2.18.1
-
cpe:2.3:a:request_project:request:2.19.0
-
cpe:2.3:a:request_project:request:2.19.1
-
cpe:2.3:a:request_project:request:2.20.0
-
cpe:2.3:a:request_project:request:2.20.1
-
cpe:2.3:a:request_project:request:2.21.0
-
cpe:2.3:a:request_project:request:2.21.1
-
cpe:2.3:a:request_project:request:2.22.0
-
cpe:2.3:a:request_project:request:2.22.1
-
cpe:2.3:a:request_project:request:2.23.0
-
cpe:2.3:a:request_project:request:2.23.1
-
cpe:2.3:a:request_project:request:2.24.0
-
cpe:2.3:a:request_project:request:2.24.1
-
cpe:2.3:a:request_project:request:2.25.0
-
cpe:2.3:a:request_project:request:2.25.1
-
cpe:2.3:a:request_project:request:2.26.0
-
cpe:2.3:a:request_project:request:2.26.1
-
cpe:2.3:a:request_project:request:2.27.0
-
cpe:2.3:a:request_project:request:2.27.1
-
cpe:2.3:a:request_project:request:2.28.0
-
cpe:2.3:a:request_project:request:2.28.1
-
cpe:2.3:a:request_project:request:2.29.0
-
cpe:2.3:a:request_project:request:2.29.1
-
cpe:2.3:a:request_project:request:2.30.0
-
cpe:2.3:a:request_project:request:2.30.1
-
cpe:2.3:a:request_project:request:2.31.0
-
cpe:2.3:a:request_project:request:2.31.1
-
cpe:2.3:a:request_project:request:2.32.0
-
cpe:2.3:a:request_project:request:2.32.1
-
cpe:2.3:a:request_project:request:2.33.0
-
cpe:2.3:a:request_project:request:2.33.1
-
cpe:2.3:a:request_project:request:2.34.0
-
cpe:2.3:a:request_project:request:2.34.1
-
cpe:2.3:a:request_project:request:2.35.0
-
cpe:2.3:a:request_project:request:2.35.1
-
cpe:2.3:a:request_project:request:2.36.0
-
cpe:2.3:a:request_project:request:2.36.1
-
cpe:2.3:a:request_project:request:2.37.0
-
cpe:2.3:a:request_project:request:2.37.1
-
cpe:2.3:a:request_project:request:2.38.0
-
cpe:2.3:a:request_project:request:2.38.1
-
cpe:2.3:a:request_project:request:2.39.0
-
cpe:2.3:a:request_project:request:2.39.1
-
cpe:2.3:a:request_project:request:2.40.0
-
cpe:2.3:a:request_project:request:2.40.1
-
cpe:2.3:a:request_project:request:2.41.0
-
cpe:2.3:a:request_project:request:2.41.1
-
cpe:2.3:a:request_project:request:2.42.0
-
cpe:2.3:a:request_project:request:2.42.1
-
cpe:2.3:a:request_project:request:2.43.0
-
cpe:2.3:a:request_project:request:2.43.1
-
cpe:2.3:a:request_project:request:2.44.0
-
cpe:2.3:a:request_project:request:2.44.1
-
cpe:2.3:a:request_project:request:2.45.0
-
cpe:2.3:a:request_project:request:2.45.1
-
cpe:2.3:a:request_project:request:2.46.0
-
cpe:2.3:a:request_project:request:2.46.1
-
cpe:2.3:a:request_project:request:2.51.1
-
cpe:2.3:a:request_project:request:2.52.0
-
cpe:2.3:a:request_project:request:2.52.1
-
cpe:2.3:a:request_project:request:2.53.0
-
cpe:2.3:a:request_project:request:2.53.1
-
cpe:2.3:a:request_project:request:2.54.0
-
cpe:2.3:a:request_project:request:2.54.1
-
cpe:2.3:a:request_project:request:2.55.0
-
cpe:2.3:a:request_project:request:2.55.1
-
cpe:2.3:a:request_project:request:2.56.0
-
cpe:2.3:a:request_project:request:2.56.1
-
cpe:2.3:a:request_project:request:2.57.0
-
cpe:2.3:a:request_project:request:2.57.1
-
cpe:2.3:a:request_project:request:2.58.0
-
cpe:2.3:a:request_project:request:2.58.1
-
cpe:2.3:a:request_project:request:2.59.0
-
cpe:2.3:a:request_project:request:2.59.1
-
cpe:2.3:a:request_project:request:2.60.0
-
cpe:2.3:a:request_project:request:2.60.1
-
cpe:2.3:a:request_project:request:2.61.0
-
cpe:2.3:a:request_project:request:2.61.1
-
cpe:2.3:a:request_project:request:2.62.0
-
cpe:2.3:a:request_project:request:2.62.1
-
cpe:2.3:a:request_project:request:2.63.0
-
cpe:2.3:a:request_project:request:2.63.1
-
cpe:2.3:a:request_project:request:2.64.0
-
cpe:2.3:a:request_project:request:2.64.1
-
cpe:2.3:a:request_project:request:2.65.0
-
cpe:2.3:a:request_project:request:2.65.1
-
cpe:2.3:a:request_project:request:2.66.0
-
cpe:2.3:a:request_project:request:2.66.1
-
cpe:2.3:a:request_project:request:2.67.0