Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3628
  • PyPI/h2
h2: Duplicate Host header could facilitate request smuggling 10 Aug
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-6hr6-w5qg-qmwg
  • PyPI/h2
h2: Duplicate Host header could facilitate request smuggling 06 Aug
  • Fix available
  • Severity - 5.3 (Medium)
PYSEC-2026-1435
  • PyPI/h2
h2 allows HTTP Request Smuggling due to illegal characters in headers 07 Jul
  • Fix available
  • Severity - 6.9 (Medium)
GHSA-847f-9342-265h
  • PyPI/h2
h2 allows HTTP Request Smuggling due to illegal characters in headers 25 Aug 2025
  • Fix available
  • Severity - 6.9 (Medium)