High severity7.5NVD Advisory· Published Jan 20, 2026· Updated Jun 17, 2026
CVE-2025-66902
CVE-2025-66902
Description
An input validation issue in in Pithikos websocket-server v.0.6.4 allows a remote attacker to obtain sensitive information or cause unexpected server behavior via the websocket_server/websocket_server.py, WebSocketServer._message_received components.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:pithikos:websocket_server:0.6.4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:pithikos:websocket_server:0.6.4:*:*:*:*:*:*:*
- (no CPE)range: =0.6.4
Patches
Vulnerability mechanics
References
1- github.com/cyberinvest211/websocket-server-vuln-poc/tree/mainnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.