MEDIUM5.5
PYSEC-2026-38
Details
Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Webseeds field. Attackers can paste a buffer of 5000 bytes into the Webseeds field during torrent creation to trigger an application crash.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/deluge
Introduced in:
0No fixed version published yet for deluge (pip). Pin to a known-safe version or switch to an alternative.