HIGHCVE-2024-6827PyPICVSS 7.5
gunicorn
Published
Description
Request smuggling leading to endpoint restriction bypass in Gunicorn
Affected Versions
>=0
FIXED VERSIONS22.0.0
References
ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2024-6827WEBhttps://github.com/benoitc/gunicorn/issues/3087WEBhttps://github.com/benoitc/gunicorn/issues/3278WEBhttps://github.com/benoitc/gunicorn/pull/3113PACKAGEhttps://github.com/benoitc/gunicornWEBhttps://github.com/benoitc/gunicorn/releases/tag/22.0.0WEBhttps://huntr.com/bounties/1b4f8f38-39da-44b6-9f98-f618639d0dd7ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2024-1135WEBhttps://github.com/benoitc/gunicorn/issues/3091WEBhttps://github.com/benoitc/gunicorn/commit/ac29c9b0a758d21f1e0fb3b3457239e523fa9f1dWEBhttps://huntr.com/bounties/22158e34-cfd5-41ad-97e0-a780773d96c1WEBhttps://lists.debian.org/debian-lts-announce/2024/06/msg00027.htmlWEBhttps://lists.debian.org/debian-lts-announce/2024/12/msg00018.html