CVE-2024-30251
HighAdvisory
Published 2 May 2024In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.011
- 64th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 53
- of 17,781 indexed, latest versions
- Container images
- 54
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
aiohttp vulnerable to Denial of Service when trying to parse malformed POST requests
Carried by container images the latest versions of 53 of 17,781 indexed charts deploy, on 54 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| aiohttppypi | 3.4.4, 3.5.4, 3.6.2, 3.7.1+10 more | 3.9.4 | 54 |
| python-aiohttpdeb | 3.8.4-1 | 3.8.4-1+deb12u1 | 1 |
- OSV records
- DEBIAN-CVE-2024-30251GHSA-5m98-qgg9-wh84
- Also known as
- PYSEC-2026-1098
Charts affected
53 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| wazuh-manager-filebeatwazuh-manager-filebeat | 0.1.0-gamma | 1 of 1See more | 11,119 |
| alertmanager-matrix-forwarderzloi-space | 1.0.1 | 1 of 2See more | 3,118 |
| grafana-matrix-forwarderzloi-space | 1.0.0 | 1 of 2See more | 1,636 |
Container images carrying it
54 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.