CVE-2024-52581 - litestar
2024-11-17 - Python, infosec, CVEA while ago I found CVE-2024-47874 in starlette (and FastAPI). The same issue is also present in litestar and I repotted that as CVE-2024-52581 (CVSSv4 8.7). The reaction time from the team was very quick this time and a fix was published in less than a week. A new record? I'm very happy with how this was handled.
Discuss here: https://chaos.social/@defnull/113498313125630967