Dependabot Sweep: h2
Ecosystem: pip
Highest severity: medium
Total alerts: 1
Advisories
MEDIUM: h2 allows HTTP Request Smuggling due to illegal characters in headers
Raw data
{
"package": "h2",
"ecosystem": "pip",
"advisories": [
{
"ghsa_id": "GHSA-847f-9342-265h",
"cve_id": "CVE-2025-57804",
"severity": "medium",
"summary": "h2 allows HTTP Request Smuggling due to illegal characters in headers",
"vulnerable_range": "< 4.3.0",
"patched_version": "4.3.0",
"alert_numbers": [
57
],
"manifest_paths": [
"uv.lock"
]
}
],
"all_manifest_paths": [
"uv.lock"
],
"max_severity": "medium",
"alert_count": 1
}
Dependabot Sweep:
h2Ecosystem: pip
Highest severity: medium
Total alerts: 1
Advisories
MEDIUM: h2 allows HTTP Request Smuggling due to illegal characters in headers
uv.lockRaw data
{ "package": "h2", "ecosystem": "pip", "advisories": [ { "ghsa_id": "GHSA-847f-9342-265h", "cve_id": "CVE-2025-57804", "severity": "medium", "summary": "h2 allows HTTP Request Smuggling due to illegal characters in headers", "vulnerable_range": "< 4.3.0", "patched_version": "4.3.0", "alert_numbers": [ 57 ], "manifest_paths": [ "uv.lock" ] } ], "all_manifest_paths": [ "uv.lock" ], "max_severity": "medium", "alert_count": 1 }