SUSE and Ubuntu Address Critical Vulnerabilities in python-tornado6

SUSE and Ubuntu Address Critical Vulnerabilities in python-tornado6

First seen 6 Jan 2026, 00:25 UTC Linuxsecurity 94% similarity 27.4

Article Content

Browse articles
ThreatCluster

SUSE and Ubuntu have released updates for python-tornado6 to address multiple vulnerabilities, including CVE-2025-67724, which allows for header injection or XSS attacks, and CVE-2025-67725, which can lead to a Denial of Service (DoS) due to quadratic complexity in string operations. These vulnerabilities affect systems using python-tornado6, necessitating immediate patching to mitigate risks.

ThreatCluster AI

Community

Browse all →