CVE-2025-47287 | tornadoweb tornado up to 6.4.x Content-Type allocation of resources (GHSA-7cx3-6m66-7c5m / Nessus ID 237167)
A vulnerability was found in tornadoweb tornado up to 6.4.x. It has been classified as critical. This affects an unknown part of the component Content-Type Handler. The manipulation leads to allocation of resources.
This vulnerability is uniquely identified as CVE-2025-47287. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.