aiohttp

Asynchronous HTTP client/server framework for asyncio and Python

Version: 3.9.4 registry icon
Safety score
75
Check your open source dependency risks. Get immediate insight about security, stability and licensing risks.
Security Risks of Known Vulnerabilities
CVE-2025-53643
CWE-444
Threat level: LOW | CVSS score: 2

The Python parser is vulnerable to a request smuggling vulnerability due to not parsing trailer sections of an HTTP request.



Please note that this component is affected by 2 other vulnerabilities
0 Critical  |  0 High  |  2 Medium  |  0 Low  |  0 Suggest

Latest safe minor: 3.12.14 - Latest safe major: 4.0.0a1 Scan your application codebase with Meterian to see all known vulnerabilities in your open source software dependencies.


Stability

Stay updated with the latest patches and releases. Plan your sofware desisgn. Avoid common known vulnerabilities fixed by the open source community

Latest patch release:   3.9.5

Latest minor release:   3.12.14

Latest major release:   4.0.0a1

Licensing

Maintain your licence declarations and avoid unwanted licences to protect your IP the way you intended.

Apache-1.0   -   Apache License 1.0

Not a wildcard

Not proprietary

OSI Compliant