Lack of data validation In aiohttp
This advisory was classified as a False Positive during our data review process to ensure accuracy and data quality.
Description
Withdrawn: Denial of Service in aiohttp
Withdrawn
This advisory has been withdrawn because the maintainers of aiohttp and multiple third parties disputed the validity of the issue. There is not sufficient evidence for the claims in the original report.
Original Description
aiohttp v3.8.1 was discovered to contain an invalid IPv6 URL which can lead to a Denial of Service (DoS).
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version |
|---|---|---|
pypi |
Aliases
1. 2. 3. 4.
References
1.