| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-35536 | Tornado 安全漏洞 | tornadoweb | Tornado | High | 7.2 | 2026-04-03 02:25:57 | Deep Dive |
| CVE-2026-31958 | Tornado has a DoS due to too many multipart parts | tornadoweb | tornado | - | - | 2026-03-11 19:27:23 | Deep Dive |
| CVE-2025-67726 | Tornado is Vulnerable to Quadratic DoS via Crafted Multipart Parameters | tornadoweb | tornado | High | 7.5 | 2025-12-12 06:13:51 | Deep Dive |
| CVE-2025-67725 | Tornado is Vulnerable to Quadratic DoS via Repeated Header Coalescing | tornadoweb | tornado | High | 7.5 | 2025-12-12 05:49:42 | Deep Dive |
| CVE-2025-67724 | Tornado vulnerable to Header Injection and XSS via reason argument | tornadoweb | tornado | Medium | 5.4 | 2025-12-12 05:37:00 | Deep Dive |
| CVE-2025-47287 | Tornado vulnerable to excessive logging caused by malformed multipart form data | tornadoweb | tornado | High | 7.5 | 2025-05-15 21:17:55 | Deep Dive |
| CVE-2024-52804 | Tornado has HTTP cookie parsing DoS vulnerability | tornadoweb | tornado | High | 7.5 | 2024-11-22 15:43:39 | Deep Dive |
| CVE-2023-28370 | Tornado 输入验证错误漏洞 | tornadoweb | Tornado | 中危 | - | 2023-05-25 00:00:00 | Deep Dive |