Related Vulnerabilities: CVE-2020-28463  

All versions of package python-reportlab are vulnerable to Server-side Request Forgery (SSRF) via img tags. In order to reduce risk, use trustedSchemes & trustedHosts (see in Reportlab's documentation).

Severity Medium

Remote Yes

Type Url request injection

Description

All versions of package python-reportlab are vulnerable to Server-side Request Forgery (SSRF) via img tags. In order to reduce risk, use trustedSchemes & trustedHosts (see in Reportlab's documentation).

AVG-1592 python-reportlab 3.5.60-1 Medium Vulnerable

https://snyk.io/vuln/SNYK-PYTHON-REPORTLAB-1022145