VYPR

Vendor CVEs

Aio Libs

All CVEs

52 total · sorted by risk
  • CVE-2023-47641LowNov 14, 2023
    risk 0.15cvss 3.4epss 0.01

    aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. Affected versions of aiohttp have a security vulnerability regarding the inconsistent interpretation of the http protocol. HTTP/1.1 is a persistent protocol, if both Content-Length(CL) and…

  • CVE-2021-21330LowFeb 26, 2021
    risk 0.13cvss 3.1epss 0.02

    aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. In aiohttp before version 3.7.4 there is an open redirect vulnerability. A maliciously crafted link to an aiohttp-based web-server could redirect the browser to a different website. It is caused by a…

Page 2 of 2