aspen@0.18.30 vulnerabilities

A filesystem router for Python web frameworks

Direct Vulnerabilities

Known vulnerabilities in the aspen package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Open Redirect

aspen is a Python web framework. Simplates are the main attraction.

Affected versions of this package are vulnerable to Open Redirect. Due to a lack of protection against URL redirection attacks.

How to fix Open Redirect?

Upgrade aspen to version 0.42 or higher.

[,0.42)
  • M
Directory Traversal

aspen is a filesystem router for Python web frameworks Directory traversal vulnerability in Aspen before 0.22 allows remote attackers to read arbitrary files via a .. (dot dot) to the default URI.

[0.9.18,0.22)