Live data from GitHub and PyPI, updated daily.
Data last fetched: 2026-05-15
7 active CVEs reported via OSV.dev
Starlette has possible denial-of-service vector when parsing large files in multipart forms
MultipartParser denial of service with too many fields or files
Starlette vulnerable to O(n^2) DoS via Range header merging in ``starlette.responses.FileResponse``
Starlette Denial of service (DoS) via multipart/form-data
Starlette has Path Traversal vulnerability in StaticFiles
Other Web Framework projects in the Python ecosystem worth evaluating.
Get SLA-backed support, security patches, and direct access to senior engineers for Starlette โ without relying on volunteer maintainers.
Talk to an Expert โ