Junglewise Threat Intelligence

CVE-2019-25586: PYSEC-2026-39 - Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively lo

CVE-2019-25586 · Severity: low · CVSS 3.1 · Published 2026-03-22

Technologies: deluge (PyPI). Vendors: PyPI.

Executive brief

Deluge 1.3.15 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the URL field. Attackers can paste a buffer of 5000 characters into the 'From URL' field during torrent addition to trigger an application crash.

Affected products

  • PyPI deluge

Related threats