VYPR

kafka-python

by Kafka Python

Source repositories

CVEs (1)

  • CVE-2026-10143HigJun 10, 2026
    risk 0.42cvss 7.5epss 0.00

    kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in SCRAM authentication handling that allows a malicious or machine-in-the-middle broker to freeze the client event loop by supplying an excessively large iteration count. In scram.py,…