CVE-2026-25577: Emmett-Core: Unhandled CookieError Exception Causing Denial of Service
The cookies property in emmett_core.http.wrappers.Request does not handle
CookieError exceptions when parsing malformed Cookie headers. This allows
unauthenticated attackers to trigger HTTP 500 errors and cause denial of service.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-25577 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →