Known Vulnerabilities for Hpack by Golang
Listed below are 1 of the newest known vulnerabilities associated with "Hpack" by "Golang".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-75484 json | Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in mtrudel bandit allows an unauthenticated remote... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-65100 json | Apache Traffic Server updates the HTTP/2 HPACK dynamic table before confirming the header block encoded successfully, so an e... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-59248 json | Allocation of resources without limits vulnerability in ninenines cowlib allows an unauthenticated remote HTTP/2 or HTTP/3 pe... | Not Provided | 2026-07-28 | 2026-07-29 |
| CVE-2026-58226 json | Inefficient Algorithmic Complexity vulnerability in elixir-mint hpax allows unauthenticated denial-of-service via unbounded H... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2026-58152 json | Apache Traffic Server mishandles integers while decoding HPACK/XPACK headers, corrupting memory. This issue affects Apache T... | Not Provided | 2026-07-29 | 2026-07-29 |
| CVE-2026-55484 json | ALOS HTTP is a Linux-first Go web framework and application server built around a custom networking stack. Prior to 0.0.0-202... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-55204 json | HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() with... | Not Provided | 2026-06-18 | 2026-07-14 |
| CVE-2026-54556 json | Http4s is a Scala interface for HTTP services. Prior to 0.23.35 and 1.0.0-M47, an unauthenticated HTTP/2 peer can cause an ou... | Not Provided | 2026-08-26 | 2026-08-29 |
| CVE-2026-54428 json | Allocation of resources without limits or throttling in the HTTP/2 HPACK decoder in Apache HttpComponents Core (5.4.2 and ear... | Not Provided | 2026-07-01 | 2026-07-01 |
| CVE-2026-54340 json | h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. Prior to commit 9265bdd, there is an HTTP/2 state amplifi... | Not Provided | 2026-07-17 | 2026-07-17 |