v3n0m-Scanner / V3n0M-Scanner

Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns
GNU General Public License v3.0
1.44k stars 409 forks source link

[Snyk] Security upgrade aiohttp from 3.7.4.post0 to 3.8.0 #210

Closed vittring closed 2 years ago

vittring commented 2 years ago

The following vulnerabilities are fixed by pinning transitive dependencies:

Fix one or more vulnerable packages in the pip dependencies of this project:

Why? Proof of Concept exploit, Recently disclosed, Has a fix available, CVSS 7.3 HTTP Header Injection SNYK-PYTHON-AIOHTTP-1584144 aiohttp: 3.7.4.post0 -> 3.8.0 Proof of Concept: here

(*) Note that the real score may have changed since the PR was raised.