VDB

TNCVE-2026-34520

TNCVE-2026-34520 PUBLISHED

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, the C parser (the default for most installs) accepted null bytes and control characters in response headers. This issue has been patched in version 3.13.4.

Exploit Intelligence

Timeline

  • Apr 1, 2026 CVE Published

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›