Количество 8
Количество 8
CVE-2026-54274
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.
CVE-2026-54274
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.
CVE-2026-54274
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1.
CVE-2026-54274
AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ...
GHSA-xcgm-r5h9-7989
aiohttp: Incomplete websocket frame payloads bypass memory limits
openSUSE-SU-2026:21372-1
Security update for python-aiohttp
SUSE-SU-2026:3208-1
Security update for python-aiohttp
SUSE-SU-2026:3207-1
Security update for python-aiohttp
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-54274 AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-54274 AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1. | CVSS3: 5.9 | 0% Низкий | около 1 месяца назад | |
CVE-2026-54274 AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to 3.14.1, if an attacker sends large incomplete websocket frame payloads, it may be possible to bypass the usual size limits on memory use. This vulnerability is fixed in 3.14.1. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-54274 AIOHTTP is an asynchronous HTTP client/server framework for asyncio an ... | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
GHSA-xcgm-r5h9-7989 aiohttp: Incomplete websocket frame payloads bypass memory limits | 0% Низкий | около 2 месяцев назад | ||
openSUSE-SU-2026:21372-1 Security update for python-aiohttp | 18 дней назад | |||
SUSE-SU-2026:3208-1 Security update for python-aiohttp | 12 дней назад | |||
SUSE-SU-2026:3207-1 Security update for python-aiohttp | 12 дней назад |
Уязвимостей на страницу