Denial of Service (DoS) Affecting scrapy package, versions [0,]


Severity

Recommended
0.0
medium
0
10

CVSS assessment made by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.15% (52nd percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications

Snyk Learn

Learn about Denial of Service (DoS) vulnerabilities in an interactive lesson.

Start learning
  • Snyk IDSNYK-PYTHON-SCRAPY-40690
  • published9 Nov 2017
  • disclosed4 Sept 2017
  • creditMikhail Korobov

Introduced: 4 Sep 2017

CVE-2017-14158  (opens in a new tab)
CWE-400  (opens in a new tab)

Overview

via S3FilesStore. Files are stored in memory before uploaded to s3, increasing memory usage if giant or many files are being uploaded at the same time.

CVSS Scores

version 3.1