Known Vulnerabilities for products from Agendaless

Listed below are 8 of the newest known vulnerabilities associated with the vendor "Agendaless".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-40587 json Pyramid is an open source Python web framework. A path traversal vulnerability in Pyramid versions 2.0.0 and 2.0.1 impacts us... 5.3 - MEDIUM 2023-08-25 2023-09-15
CVE-2022-31015 json Waitress is a Web Server Gateway Interface server for Python 2 and 3. Waitress versions 2.1.0 and 2.1.1 may terminate early d... 5.9 - MEDIUM 2022-05-31 2022-06-14
CVE-2022-24761 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2022-03-17 2022-09-23
CVE-2020-5236 json Waitress version 1.4.2 allows a DOS attack When waitress receives a header that contains invalid characters. When a header li... 6.5 - MEDIUM 2020-02-04 2020-02-06
CVE-2019-16792 json Waitress through version 1.3.1 allows request smuggling by sending the Content-Length header twice. Waitress would header fol... 7.5 - HIGH 2020-01-22 2022-09-23
CVE-2019-16789 json In Waitress through version 1.4.0, if a proxy server is used in front of waitress, an invalid request may be sent by an attac... 8.2 - HIGH 2019-12-26 2023-11-07
CVE-2019-16786 json Waitress through version 1.3.1 would parse the Transfer-Encoding header and only look for a single string value, if that valu... 7.5 - HIGH 2019-12-20 2023-11-07
CVE-2019-16785 json Waitress through version 1.3.1 implemented a "MAY" part of the RFC7230 which states: "Although the line terminator for the st... 7.5 - HIGH 2019-12-20 2023-11-07

Known software with vulnerabilities from Agendaless

Type Vendor Product Version
ApplicationAgendalessWaitress0.1