Known Vulnerabilities for Hono by Eclipse
Listed below are 2 of the newest known vulnerabilities associated with "Hono" by "Eclipse".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-96754 json | orval versions before 8.29.0 contain a code injection vulnerability in the @orval/hono generator that fails to escape OpenAPI... | Not Provided | 2026-09-23 | 2026-09-29 |
| CVE-2026-93981 json | hono before 4.13.7 fails to HTML-escape plain strings rendered by hono/jsx as a child or fallback of Suspense, as a string ch... | Not Provided | 2026-09-19 | 2026-09-21 |
| CVE-2026-84365 json | Hono is a Web application framework that provides support for any JavaScript runtime. From 4.12.12 until 4.13.5, the fix rele... | Not Provided | 2026-09-01 | 2026-09-04 |
| CVE-2026-84364 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.13.5, when parseBody() expan... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-84363 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.13.5, Hono's query helpers t... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-81888 json | @hono/oauth-providers is Authentication middleware for Hono. Prior to version 0.8.6, the built-in social login providers acce... | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-73565 json | @hono/node-server allows running the Hono application on Node.js. From 2.0.0 until 2.0.10, a WebSocket upgrade request to an ... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-73423 json | Astro is a web framework for content-driven websites. From 7.0.0 until 7.0.6, the composable astro/hono pipeline installs sec... | Not Provided | 2026-08-12 | 2026-08-13 |
| CVE-2026-71850 json | Hono is a Web application framework that provides support for any JavaScript runtime. From 3.8.0 to 4.12.33, memo() from hono... | Not Provided | 2026-08-07 | 2026-08-10 |
| CVE-2026-71849 json | Hono is a Web application framework that provides support for any JavaScript runtime. From 4.7.0 to 4.12.33, the Proxy Helper... | Not Provided | 2026-08-07 | 2026-08-10 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Eclipse | Hono | 1.5.3 | |||
| Application | Eclipse | Hono | 1.5.0 | |||
| Application | Eclipse | Hono | 1.4.4 | |||
| Application | Eclipse | Hono | 1.4.3 | |||
| Application | Eclipse | Hono | 1.4.0 | |||
| Application | Eclipse | Hono | 1.3.1 | |||
| Application | Eclipse | Hono | 1.3.0 | |||
| Application | Eclipse | Hono | 1.2.4 | |||
| Application | Eclipse | Hono | 1.2.3 | |||
| Application | Eclipse | Hono | 1.2.2 | |||
| Application | Eclipse | Hono | 1.2.1 | |||
| Application | Eclipse | Hono | 1.2.0 | |||
| Application | Eclipse | Hono | 1.1.2 | |||
| Application | Eclipse | Hono | 1.1.1 | |||
| Application | Eclipse | Hono | 1.1.0 | |||
| Application | Eclipse | Hono | 1.0.4 | |||
| Application | Eclipse | Hono | 1.0.3 | |||
| Application | Eclipse | Hono | 1.0.2 | |||
| Application | Eclipse | Hono | 1.0.1 | |||
| Application | Eclipse | Hono | 1.0.0 |