PyPi: Frigate

CVE-2024-32874

Safety vulnerability ID: 71966

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at May 14, 2024 Updated at Dec 10, 2024
Scan your Python projects for vulnerabilities →

Advisory

Frigate is a network video recorder (NVR) with real-time local object detection for IP cameras. In affected versions, when uploading a file or retrieving the filename, a user may intentionally use a large Unicode filename which would lead to an application-level denial of service. This is due to no limitation set on the length of the filename and the costly use of the Unicode normalization with the form NFKD under the hood of `secure_filename()`.

Affected package

frigate

Latest version: 0.7.0

A tool for autogenerating helm documentation.

Affected versions

Fixed versions

Vulnerability changelog

This vulnerability has no description

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application