Known Vulnerabilities for Http by Dart
Listed below are 1 of the newest known vulnerabilities associated with "Http" by "Dart".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-66339 json | A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Pr... | Not Provided | 2026-07-24 | 2026-07-24 |
| CVE-2026-66338 json | A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that sil... | Not Provided | 2026-07-24 | 2026-07-24 |
| CVE-2026-66337 json | A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a hea... | Not Provided | 2026-07-24 | 2026-07-24 |
| CVE-2026-65701 json | SoftVC VITS Singing Voice Conversion through commit 730930d contains a path traversal vulnerability in the full-song inferenc... | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65694 json | Microweber CMS through 2.0.20 contains a path traversal vulnerability in the static file controller that allows unauthenticat... | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-65602 json | Traefik 3.6.0 through 3.6.22 and 3.7.0 through 3.7.6 fail to enforce the crossProviderNamespaces allowlist for IngressRouteTC... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-65596 json | n8n before 1.123.64, 2.29.8, and 2.30.1 fails to enforce the "Allowed HTTP Request Domains" restriction on HTTP-based credent... | Not Provided | 2026-07-22 | 2026-07-22 |
| CVE-2026-65593 json | n8n versions before 1.123.64, 2.29.8, and 2.30.1 contain a server-side request forgery vulnerability in the dynamic-node-para... | Not Provided | 2026-07-22 | 2026-07-24 |
| CVE-2026-65589 json | n8n versions before 1.123.64 fail to properly mask custom HTTP header credentials in LLM sub-node execution data, writing pla... | Not Provided | 2026-07-22 | 2026-07-23 |
| CVE-2026-65318 json | Verba RAG application version 2.1.3 contains an unauthenticated server-side request forgery vulnerability that allows unauthe... | Not Provided | 2026-07-21 | 2026-07-22 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Dart | Http | 0.13.0 | |||
| Application | Dart | Http | 0.12.2 | |||
| Application | Dart | Http | 0.12.1 | |||
| Application | Dart | Http | 0.12.0\+4 | |||
| Application | Dart | Http | 0.12.0\+3 | |||
| Application | Dart | Http | 0.12.0\+2 | |||
| Application | Dart | Http | 0.12.0 | |||
| Application | Dart | Http | 0.11.3\+9 | |||
| Application | Dart | Http | 0.11.3\+8 | |||
| Application | Dart | Http | 0.11.3\+7 | |||
| Application | Dart | Http | 0.11.3\+6 | |||
| Application | Dart | Http | 0.11.3\+5 | |||
| Application | Dart | Http | 0.11.3\+4 | |||
| Application | Dart | Http | 0.11.3\+3 | |||
| Application | Dart | Http | 0.11.3\+2 | |||
| Application | Dart | Http | 0.11.3\+17 | |||
| Application | Dart | Http | 0.11.3\+16 | |||
| Application | Dart | Http | 0.11.3\+15 | |||
| Application | Dart | Http | 0.11.3\+14 | |||
| Application | Dart | Http | 0.11.3\+13 |