Product
The python-utcp library versions before 1.1.4 contain a server-side request forgery vulnerability due to improper validation of HTTP redirects within the HttpCommunicationProtocol.call_tool method.