Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi waitress Security Advisories

Loading...
Moderate
GSA_kwCzR0hTQS1mNXg5LThqd2MtMjVyd84AArT8
Uncaught Exception (due to a data race) leads to process termination in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 28.6
Published: almost 2 years ago
High
GSA_kwCzR0hTQS1qN2o2LTdoZngtNTUyMs4AAjYE
Inconsistent Interpretation of HTTP Requests in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 33.0
Published: almost 2 years ago
High
GSA_kwCzR0hTQS00ZjdwLTI3amMtM2MzNs00Jg
HTTP Request Smuggling in waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 33.0
Published: about 2 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTczbTItM3B3Zy01Zmdj
Catastrophic backtracking in regex allows Denial of Service in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 25.1
Published: about 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTk2OGYtNjZyNS01djc0
HTTP Request Smuggling in Waitress: Invalid whitespace characters in headers (Follow-up)
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 31.2
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW01ZmYtM3dqMy04cGg0
HTTP Request Smuggling: Invalid whitespace characters in headers in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 4 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTRwcHAtZ3Bjci03cWY2
HTTP Request Smuggling: Content-Length Sent Twice in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWcyeGMtMzVqdy1jNjNw
HTTP Request Smuggling: Invalid Transfer-Encoding in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 31.2
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXBnMzYtd3BtNS1nNTdw
HTTP Request Smuggling: LF vs CRLF handling in Waitress
Ecosystems: pypi
Packages: waitress
Source: GitHub Advisory Database
Blast Radius: 31.2
Published: over 4 years ago
Statistics
Advisories: 17,986
Packages: 8,213
Repositories: 1
Ecosystems: 12
Filter by Package
tensorflow 432 tensorflow-cpu 387 tensorflow-gpu 384 django 80 apache-airflow 78 ansible 63 apache-superset 48 rdiffweb 42 plone 42 Pillow 41 salt 38 Plone 36 matrix-synapse 35 vyper 32 opencv-contrib-python 30 opencv-python 30 mlflow 30 Django 21 langchain 18 PaddlePaddle 17 cobbler 17 pillow 15 cryptography 15 paddlepaddle 15 notebook 15 modoboa 14 gradio 14 pyload-ng 14 pyftpdlib 13 nova 13 OctoPrint 12 keystone 12 neutron 12 vantage6 12 calibreweb 11 twisted 11 onionshare-cli 11 urllib3 11 glance 11 Flask-AppBuilder 10 aiohttp 10 opencv-contrib-python-headless 9 ethyca-fides 9 moin 9 kiwitcms 9 Zope 9 opencv-python-headless 9 zope 9 wagtail 9 waitress 9 label-studio 8 numpy 8 aubio 8 lief 7 pysaml2 7 scrapy 7 nautobot 7 jupyter-server 7 python-keystoneclient 7 matrix-sydent 7 swift 7 pip 7 pgadmin4 6 mailman 6 lxml 6 tuf 6 web2py 6 mindsdb 6 apache-airflow-providers-apache-hive 6 Zope2 6 ipython 6 sentry 6 inventree 6 graphite-web 6 trytond 5 requests 5 feedparser 5 saleor 5 bleach 5 lmdb 5 python-gnupg 5 paramiko 5 whoogle-search 5 Products.CMFPlone 5 horizon 5 ckan 5 roundup 5 pyspark 5 jupyterhub 4 yt-dlp 4 datasette 4 ansible-core 4 reportlab 4 starlette 4 keylime 4 grpcio 4 bottle 4 grpc 4 markdown2 4 Pygments 4 werkzeug 4 awsiotsdk 4 aws-iot-device-sdk-v2 4 FreeTAKServer-UI 4 transformers 4 qutebrowser 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 Flask-Security-Too 4 omero-web 4 oauthenticator 4 pretix 4 PyPDF2 4 esphome 4 nvflare 4 httpie 4 nltk 4 buildbot 4 GitPython 4 Jinja2 4 rsa 3 copyparty 3 Werkzeug 3 localstack 3 cinder 3 apache-iotdb 3 flask 3 sanic 3 fava 3 pyarrow 3 poetry 3 mistune 3 ecdsa 3 asyncssh 3 Products.PluggableAuthService 3 jupyterlab 3 tornado 3 ansible-runner 3 ray 3 aim 3 indy-node 3 openvpn-monitor 3 barbican 3 ujson 3 torchserve 3 jwcrypto 3 ryu 3 mitmproxy 3 bitlyshortener 3 indico 3 apache-airflow-providers-apache-spark 3 plone.app.event 3 plone.app.theming 3 plone.app.dexterity 3 plone.supermodel 3 mayan-edms 3 gerapy 3 pyyaml 3 pandasai 3 tripleo-heat-templates 3 protobuf 3 django-helpdesk 3 apache-libcloud 3 onnx 3 zenml 3 sickrage 3 sqlparse 3 slixmpp 3 asyncua 3 clearml 3 io.grpc:grpc-protobuf 3 docassemble.webapp 3 wger 3 keyring 3 streamlit 3 quokka 3 pywasm3 3 Keystone 3 Weblate 3 wasm3 2 SQLAlchemy 2 flaskcode 2 Google.Protobuf 2 google/protobuf 2 github.com/protocolbuffers/protobuf 2 ubi-reader 2 pyopenssl 2 org.apache.spark:spark-core 2 cabot 2 ajenti 2 pymongo 2 aws-encryption-sdk-cli 2 httplib2 2 starkbank-ecdsa 2 Moin 2 apache-airflow-providers-apache-sqoop 2 certifi 2 mobsf 2 dbt-core 2 typed-ast 2 python-cjson 2