Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.7
CVE-2026-10143
- EPSS 0.52%
- Veröffentlicht 10.06.2026 20:22:39
- Zuletzt bearbeitet 17.08.2026 12:17:09
kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in SCRAM authentication handling that allows a malicious or machine-in-the-middle broker to freeze the client event loop by supplying an excessively large iteration count. In scra...
8.7
CVE-2026-10142
- EPSS 0.35%
- Veröffentlicht 10.06.2026 20:13:11
- Zuletzt bearbeitet 23.07.2026 09:10:00
kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in the protocol parser that allows a malicious broker or machine-in-the-middle attacker to exhaust memory or hang connections by sending a crafted 4-byte frame length value withou...
1