Skip to content
Noroxi

twisted records

14 published records for vendor twisted.

All records

14 records
  • In Twisted Web through 19.10.0, there was an HTTP request splitting vulnerability.

    CriticalCVSS 9.8No exploitEPSS 4%

    twisted · twistedMar 12, 2020

  • In Twisted Web through 19.10.0, there was an HTTP request splitting vulnerability.

    CriticalCVSS 9.8No exploitEPSS 3%

    twisted · twistedMar 12, 2020

  • HTTP Request Smuggling in twisted.web

    HighCVSS 8.1No exploitEPSS 3%

    twisted · twistedApr 4, 2022

  • twisted.web has disordered HTTP pipeline response

    HighCVSS 8.3No exploitEPSS 1%

    twisted · twistedJul 29, 2024

  • Buffer Overflow in Twisted

    HighCVSS 7.5No exploitEPSS 4%

    twisted · twistedMar 3, 2022

  • CVE-2014-7143
    31Monitor

    Python Twisted 14.0 trustRoot is not respected in HTTP client

    HighCVSS 7.5No exploitEPSS 3%

    twisted · twistedNov 12, 2019

  • In words.protocols.jabber.xmlstream in Twisted through 19.2.1, XMPP support did not verify certificates when used with TLS, allowing an atta

    HighCVSS 7.4No exploitEPSS 2%

    twisted · twistedJun 16, 2019

  • Cookie and header exposure in twisted

    HighCVSS 7.5No exploitEPSS 1%

    twisted · twistedFeb 7, 2022

  • Twisted: Denial of Service (DoS) in twisted.names via Crafted DNS Compression Pointer Chains

    HighCVSS 7.5No exploitEPSS 1%

    twisted · twistedMay 13, 2026

  • In Twisted before 19.2.1, twisted.web did not validate or sanitize URIs or HTTP methods, allowing an attacker to inject invalid characters s

    MediumCVSS 6.1No exploitEPSS 3%

    twisted · twistedJun 10, 2019

  • HTML injection in HTTP redirect body

    MediumCVSS 6.1Proof of conceptEPSS 1%

    twisted · twistedJul 29, 2024

  • Twisted before 16.3.1 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI application

    MediumCVSS 5.3No exploitEPSS 3%

    twisted · twistedMar 11, 2020

  • Twisted vulnerable to NameVirtualHost Host header injection

    MediumCVSS 5.4No exploitEPSS 1%

    twisted · twistedOct 26, 2022

  • twisted.web has disordered HTTP pipeline response

    MediumCVSS 5.3No exploitEPSS 1%

    twisted · twistedOct 25, 2023