Known Vulnerabilities for Http by Reactphp
Listed below are 2 of the newest known vulnerabilities associated with "Http" by "Reactphp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-92808 json | A server-side request forgery (SSRF) vulnerability exists in the UnifiedLogin service of Altium Enterprise Server. An unauthe... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92789 json | Graylog through 7.1.4 validates outbound URLs against an allowlist before making requests but fails to re-validate after foll... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92751 json | CMAK through 3.0.0.6 fails to install a cross-site request forgery filter, allowing attackers to perform state-changing actio... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92729 json | SigNoz versions 0.88.0 through 0.141.0 fail to apply authorization wrappers to trace-funnel analytics endpoints in the HTTP h... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92595 json | Nodemailer (npm package `nodemailer`) versions 9.1.0 and earlier do not honor the `disableFileAccess` and `disableUrlAccess` ... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92568 json | MLRun through 1.11.0 contains a server-side request forgery vulnerability in the WebhookNotification handler that allows auth... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92566 json | DataGear through 6.0.0 contains a server-side request forgery vulnerability in the /dataSet/preview/Http endpoint that allows... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92081 json | fastify is a fast and low-overhead web framework for Node.js. In versions before 5.12.5, when a route registers a response tr... | Not Provided | 2026-09-16 | 2026-09-16 |
| CVE-2026-92044 json | Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thu... | Not Provided | 2026-09-15 | 2026-09-16 |
| CVE-2026-92036 json | Incorrect boundary conditions in the Networking: HTTP component. This vulnerability was fixed in Firefox 156 and Thunderbird ... | Not Provided | 2026-09-15 | 2026-09-15 |