Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

github логотип

GHSA-xcgm-r5h9-7989

около 2 месяцев назад

aiohttp: Incomplete websocket frame payloads bypass memory limits

EPSS: Низкий
ubuntu логотип

CVE-2026-54274

около 1 месяца назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-54274

около 1 месяца назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-54274

около 1 месяца назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-54274

около 1 месяца назад

AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21372-1

18 дней назад

Security update for python-aiohttp

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3208-1

12 дней назад

Security update for python-aiohttp

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3207-1

12 дней назад

Security update for python-aiohttp

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xcgm-r5h9-7989

aiohttp: Incomplete websocket frame payloads bypass memory limits

0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2026-54274

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-54274

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.

CVSS3: 5.9
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-54274

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-54274

AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21372-1

Security update for python-aiohttp

18 дней назад
suse-cvrf логотип
SUSE-SU-2026:3208-1

Security update for python-aiohttp

12 дней назад
suse-cvrf логотип
SUSE-SU-2026:3207-1

Security update for python-aiohttp

12 дней назад

Уязвимостей на страницу