© 2025-2026 PySpect
First version without a known vulnerability: 25.3.0
sanic chunked trailer request smuggling allows hidden second request execution
Fixed in: 24.12.1, 25.12.1
sanic vulnerable to Path Traversal when using `app.static` if using encoded `%2F` URLs
Fixed in: 22.6.1, 21.12.2, 20.12.7
Sanic arbitrary file read and directory traversal
Fixed in: 0.5.1
Server crash if running Python 3.10 w/ Sanic 20.12
Fixed in: 20.12.6