webargs vulnerabilities

Declarative parsing and validation of HTTP request objects, with built-in support for popular web frameworks, including Flask, Django, Bottle, Tornado, Pyramid, Falcon, and aiohttp.

  • latest version

    8.7.0

  • latest non vulnerable version

  • first published

    11 years ago

  • latest version published

    4 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the webargs package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Cross-Site Request Forgery (CSRF)

    [6.0.0b1,6.0.0b4)[,5.5.3)
    • M
    Race Condition

    [,5.1.3)

    Package versions

    103 VERSIONS IN TOTAL See all versions
    versionpublisheddirect vulnerabilities
    8.7.018 Apr, 2025
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.6.011 Sep, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.4.07 Jan, 2024
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.3.010 Jul, 2023
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.2.012 Jul, 2022
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.1.012 Jan, 2022
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.0.112 Aug, 2021
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    8.0.08 Apr, 2021
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    7.0.114 Dec, 2020
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L
    7.0.010 Dec, 2020
    • 0
      C
    • 0
      H
    • 0
      M
    • 0
      L