Known Vulnerabilities for products from Aiohttp

Listed below are 11 of the newest known vulnerabilities associated with the vendor "Aiohttp".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-34525 json AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, multiple Host header... Not Provided 2026-04-01 2026-04-16
CVE-2026-34520 json Not Provided 2026-04-01 2026-04-04
CVE-2026-34519 json Not Provided 2026-04-01 2026-04-02
CVE-2026-34518 json AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, when following redir... Not Provided 2026-04-01 2026-04-16
CVE-2026-34517 json Not Provided 2026-04-01 2026-04-02
CVE-2026-34516 json Not Provided 2026-04-01 2026-04-04
CVE-2026-34515 json Not Provided 2026-04-01 2026-04-02
CVE-2026-34514 json Not Provided 2026-04-01 2026-04-02
CVE-2026-34513 json Not Provided 2026-04-01 2026-04-02
CVE-2026-22815 json AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, insufficient restric... Not Provided 2026-04-01 2026-04-06
CVE-2024-23334 json 7.5 - HIGH 2024-01-29 2024-02-05
CVE-2023-49082 json 5.3 - MEDIUM 2023-11-29 2024-01-29
CVE-2023-49081 json 5.3 - MEDIUM 2023-11-30 2024-01-29
CVE-2023-47627 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2023-11-14 2024-02-05
CVE-2022-33124 json ** DISPUTED ** AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a Denial of Service (DoS)... 5.5 - MEDIUM 2022-06-23 2023-11-22
CVE-2021-21330 json aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In aiohttp before version 3.7.4 there is an o... 6.1 - MEDIUM 2021-02-26 2023-11-22