VYPR
Medium severity5.5NVD Advisory· Published Jun 23, 2022· Updated Jun 17, 2026

CVE-2022-33124

CVE-2022-33124

Description

AIOHTTP 3.8.1 can report a "ValueError: Invalid IPv6 URL" outcome, which can lead to a Denial of Service (DoS). NOTE: multiple third parties dispute this issue because there is no example of a context in which denial of service would occur, and many common contexts have exception handing in the calling application

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
aiohttpPyPI
<= 3.8.1

Affected products

3
  • Aio Libs/Aiohttp2 versions
    cpe:2.3:a:aiohttp:aiohttp:3.8.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:aiohttp:aiohttp:3.8.1:*:*:*:*:*:*:*
    • (no CPE)
  • ghsa-coords
    Range: <= 3.8.1

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.