OSS Support Hub / Web Framework

Python Web Framework MIT Latest: v2.21.1

Litestar

Flexible, lightweight ASGI framework for building high-performance APIs with Python

Project Health at a Glance

Live data from GitHub and PyPI, updated daily.

โญ
8.2K
GitHub Stars
๐Ÿ“ฆ
v2.21.1
Latest Release ยท 2 months ago
๐Ÿ”„
42d
Avg. Release Cadence
๐Ÿ›
273
Open Issues
๐Ÿ“…
Yesterday
Last Commit
๐Ÿ”’
8
Active CVEs

Data last fetched: 2026-05-15

Known Vulnerabilities

8 active CVEs reported via OSV.dev

Litestar's CORS origin allowlist has a bypass due to unescaped regex metacharacters in allowed origins

Published: 2026-02-09 Fixed in: 2.20.0

Litestar has potential log injection in exception logging

Published: 2025-08-11 Fixed in: 2.17.0

Litestar and Starlite vulnerable to Path Traversal

Published: 2024-05-06 Fixed in: 2.8.3

Litestar's AllowedHosts has a validation bypass due to unescaped regex metacharacters in configured host patterns

Published: 2026-02-09 Fixed in: 2.20.0

Litestar allows unbounded resource consumption (DoS vulnerability)

Published: 2024-11-20 Fixed in: 2.13.0

Litestar X-Forwarded-For Header Spoofing Vulnerability Enables Rate Limit Evasion

Published: 2025-10-06 Fixed in: 2.18.0

Litestar's FileStore key canonicalization collisions allow response cache mixup/poisoning (ASCII ord + Unicode NFKD)

Published: 2026-02-09 Fixed in: 2.20.0
PYSEC-2024-178 CVSS_V3

Published: 2024-11-20 Fixed in: 53c1473b5ff7502816a9a339ffc90731bb0c2138

Alternatives to Litestar

Other Web Framework projects in the Python ecosystem worth evaluating.

Support Options for Litestar

Enterprise Support via DepKeep

Get SLA-backed support, security patches, and direct access to senior engineers for Litestar โ€” without relying on volunteer maintainers.

Talk to an Expert โ†’