THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-69230 (MEDIUM 5.3) — AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, reading multiple invalid cookies can lead to a logging storm. If the cookies attribute is accessed in an application, then an attacker may be able to trigger a storm of w

[NVD] CVE-2025-69230 (MEDIUM 5.3) — AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, reading multiple invalid cookies can lead to a logging storm. If the cookies attribute is accessed in an application, then an attacker may be able to trigger a storm of w

lownvdPublished 2026-01-06

CVE-2025-69230 CVSS: 5.3 MEDIUM Published: 2026-01-06T00:15:48.483

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. In versions 3.13.2 and below, reading multiple invalid cookies can lead to a logging storm. If the cookies attribute is accessed in an application, then an attacker may be able to trigger a storm of warning-level logs using a specially crafted Cookie h

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-69230