RHSA-2026:20573MediumCVSS 5.4

Red Hat Security Advisory: python-tornado security update

Published
May 26, 2026
Last Modified
May 26, 2026

🔗 CVE IDs covered (2)

CVE-2026-31958 · pendingCVE-2026-35536

📋 Description

CVE-2026-31958 — tornado-python: Tornado: Denial of Service via large multipart bodies CVE-2026-35536 — tornado: Tornado: Cookie attribute injection due to improper handling of cookie arguments

🔗 References (5)