© 2025-2026 PySpect
First version without a known vulnerability: 0.12.20
Denial of service in bottle
Fixed in: 0.12.20, e140e1b54da721a660f2eb9d58a106b7b3ff2f00, a2b0ee6bb4ce88895429ec4aca856616244c4c4c
Bottle does not properly limit content-types
Fixed in: 0.10.12, 0.11.7, 0.12.6
bottle.py vulnerable to CRLF Injection
Fixed in: 0.12.11, 6d7e13da0f998820800ecb3fe9ccee4189aefb54
bottle HTTP Request smuggling
Fixed in: 0.12.19