Known vulnerabilities in python-aiohttp (Red Hat package) - page 4
Vendor:
Red Hat Inc.
Software:
python-aiohttp (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:python-aiohttp_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
68
Public exploits:
3
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (68)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU85886 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-23334 |
CWE-22 | High | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc, 3.9.2-1.el8ui, 3.9.3-1.el9ap | 30.01.2024 |
SB2024013007 SB2024013089 SB2024013101 and 18 more |
||
| #VU85884 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2024-23829 |
CWE-444 | Medium | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc, 3.9.2-1.el8ui, 3.9.3-1.el9ap | 30.01.2024 |
SB2024013007 SB2024013089 SB2024013101 and 14 more |
||
| #VU85368 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-22195 |
CWE-79 | Medium | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc, 3.9.2-1.el8ui, 3.9.3-1.el9ap | 15.01.2024 |
SB2024011508 SB2024011512 SB2024011513 and 60 more |
||
| #VU84432 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2023-5189 |
CWE-22 | Medium | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc | 14.12.2023 |
SB2023121427 SB2023121428 SB2024032846 and 1 more |
||
| #VU83632 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2023-49081 |
CWE-444 | Medium | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc, 3.9.2-1.el8ui | 04.12.2023 |
SB2023120404 SB2023120408 SB2023121355 and 15 more |
||
| #VU83631 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2023-47627 |
CWE-444 | Medium | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc, 3.9.2-1.el8ui, 3.9.3-1.el9ap | 04.12.2023 |
SB2023120403 SB2023120406 SB2023120407 and 15 more |
||
| #VU81657 - Resource exhaustion CVE-2023-43665 |
CWE-400 | Medium | 3.9.2-0.1.el8pc, 3.9.2-1.el8pc, 3.9.2-1.el8ui | 05.10.2023 |
SB2023100544 SB2023100545 SB2023100546 and 16 more |
||
| #VU54626 - Improper Control of Generation of Code ('Code Injection') CVE-2021-3583 |
CWE-94 | High | 3.7.4-1.el8pc | 08.07.2021 |
SB2021070822 SB2021070823 SB2021071517 and 12 more |
Showing elements 61 - 80 out of 68