Known Vulnerabilities for Hono by @clerk
Listed below are 10 of the newest known vulnerabilities associated with "Hono" by "@clerk".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56762 json | Hono before 4.12.12 does not validate cookie names on the write path in the setCookie(), serialize(), and serializeSigned() f... | Not Provided | 2026-06-23 | 2026-06-24 |
| CVE-2026-56761 json | hono before 4.12.14 contains an html injection vulnerability in jsx server-side rendering that allows attackers to inject uni... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-54290 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, with credentials: tru... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-54289 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda@Edge, C... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-54288 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, the Body Limit Middle... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-54287 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on AWS Lambda, the AL... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-54286 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.25, on Windows hosts, an ... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-47676 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.21, app.mount() strips th... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-47675 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.21, the serialize() funct... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-47674 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.21, the ip-restriction mi... | Not Provided | 2026-05-28 | 2026-05-28 |