Known Vulnerabilities for products from Aiohttp Project

Listed below are 3 of the newest known vulnerabilities associated with the vendor "Aiohttp Project".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-37276 json aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. aiohttp v3.8.4 and earlier are bundled with l... 7.5 - HIGH 2023-07-19 2023-07-28
CVE-2022-33124 json ** DISPUTED ** AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a Denial of Service (DoS)... 5.5 - MEDIUM 2022-06-23 2023-11-22
CVE-2021-21330 json aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In aiohttp before version 3.7.4 there is an o... 6.1 - MEDIUM 2021-02-26 2023-11-22

Known software with vulnerabilities from Aiohttp Project

Type Vendor Product Version
ApplicationAiohttp ProjectAiohttp3.6.2