PatchSiren

sanic-org CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH sanic-org CVE published 2026-09-17

CVE-2026-85077

CVE-2026-85077 Sanic Web Server Header Injection Vulnerability. This high-severity issue in Sanic, an open-source Python web server/framework, allows for header injection due to improper serialization of response header names and values. This can lead to various security problems, including session fixation, cache poisoning, and security-header corruption. Sanic users and administrators should assess thei [truncated]