Medium severity6.1NVD Advisory· Published Dec 27, 2020· Updated Jun 17, 2026
CVE-2020-35678
CVE-2020-35678
Description
Autobahn|Python before 20.12.3 allows redirect header injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
autobahnPyPI | < 20.12.3 | 20.12.3 |
Affected products
8- Autobahn|Python/Autobahn|Pythondescription
- ghsa-coords6 versionspkg:pypi/autobahnpkg:rpm/opensuse/python-autobahn&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/python-autobahn&distro=openSUSE%20Leap%2015.2pkg:rpm/opensuse/python-autobahn&distro=openSUSE%20Tumbleweedpkg:rpm/suse/python-autobahn&distro=SUSE%20Package%20Hub%2015%20SP1pkg:rpm/suse/python-autobahn&distro=SUSE%20Package%20Hub%2015%20SP2
< 20.12.3+ 5 more
- (no CPE)range: < 20.12.3
- (no CPE)range: < 17.10.1-lp151.3.3.1
- (no CPE)range: < 17.10.1-lp152.4.3.1
- (no CPE)range: < 21.3.1-1.3
- (no CPE)range: < 17.10.1-bp151.4.3.1
- (no CPE)range: < 17.10.1-bp152.4.3.1
Patches
Vulnerability mechanics
References
8- github.com/crossbario/autobahn-python/compare/v20.12.2...v20.12.3nvdPatchThird Party AdvisoryWEB
- github.com/crossbario/autobahn-python/pull/1439nvdPatchThird Party AdvisoryWEB
- autobahn.readthedocs.io/en/latest/changelog.htmlnvdRelease NotesVendor AdvisoryWEB
- github.com/advisories/GHSA-gwp7-vqr5-h33hghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-35678ghsaADVISORY
- pypi.org/project/autobahn/20.12.3/nvdProductThird Party Advisory
- github.com/pypa/advisory-database/tree/main/vulns/autobahn/PYSEC-2020-25.yamlghsaWEB
- pypi.org/project/autobahn/20.12.3ghsaWEB
News mentions
0No linked articles in our index yet.