Known Vulnerabilities for Http Server by Dart
Listed below are 1 of the newest known vulnerabilities associated with "Http Server" by "Dart".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-103765 json | Mooncake through 0.3.13.post1 contains a missing authentication vulnerability in the HTTP metadata server /metadata handler t... | Not Provided | 2026-10-02 | 2026-10-01 |
| CVE-2026-103471 json | restbed through 5.0.0 buffers HTTP request headers without enforcing a maximum size limit, allowing remote unauthenticated at... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-103399 json | A flaw was found in SoupServer (libsoup). When an HTTP/1.x client sends a request with Expect: 100-continue and a request bod... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-103291 json | Ghost versions from 3.20.2 before 6.51.0 contain a server-side request forgery vulnerability in image dimension refetching th... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-102984 json | Astro is a web framework for content-driven websites. Prior to 11.1.3, the @astrojs/node adapter builds a request URL from th... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102878 json | mcp-chrome-bridge through 1.0.31 contains an origin validation error in the native-server HTTP API that allows attackers to b... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-101061 json | utcp-gql before 1.1.1 and utcp-websocket before 1.1.1 contain server-side request forgery vulnerabilities due to incomplete a... | Not Provided | 2026-09-27 | 2026-09-30 |
| CVE-2026-101060 json | python-utcp versions before 1.1.4 contain a server-side request forgery vulnerability in HttpCommunicationProtocol.call_tool ... | Not Provided | 2026-09-27 | 2026-09-28 |
| CVE-2026-101058 json | python-utcp (pip package utcp-http) before 1.1.12 does not verify whether tool URLs declared in a hand-written UTCP manual po... | Not Provided | 2026-09-27 | 2026-09-30 |
| CVE-2026-101057 json | utcp-mcp (the MCP plugin of python-utcp) through 1.1.2 connects to the HTTP and WebSocket MCP server URLs given in a call tem... | Not Provided | 2026-09-27 | 2026-09-30 |