Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-x6cr-mq53-cc76 | Emmett-Core: Unhandled CookieError Exception Causing Denial of Service |
Thu, 12 Feb 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Emmett-framework
Emmett-framework core |
|
| Vendors & Products |
Emmett-framework
Emmett-framework core |
Wed, 11 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Feb 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Emmett is a framework designed to simplify your development process. Prior to 1.3.11, the cookies property in mmett_core.http.wrappers.Request does not handle CookieError exceptions when parsing malformed Cookie headers. This allows unauthenticated attackers to trigger HTTP 500 errors and cause denial of service. This vulnerability is fixed in 1.3.11. | |
| Title | Emmett has an Unhandled CookieError Exception Causing Denial of Service | |
| Weaknesses | CWE-248 CWE-307 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-02-11T15:33:08.561Z
Reserved: 2026-02-03T01:02:46.714Z
Link: CVE-2026-25577
Updated: 2026-02-11T15:32:48.921Z
Status : Deferred
Published: 2026-02-10T18:16:37.290
Modified: 2026-04-15T00:35:42.020
Link: CVE-2026-25577
No data.
OpenCVE Enrichment
Updated: 2026-04-17T21:00:12Z
Github GHSA