Known Vulnerabilities for Http-client by Symfony
Listed below are 10 of the newest known vulnerabilities associated with "Http-client" by "Symfony".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-82732 json | Improper Input Validation vulnerability in ash-project ash_typescript allows a remote attacker to submit argument values outs... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-81735 json | startServer.ts in the mcp-http-server package of UI-TARS-desktop defaulted its listen address to '::' when no host was given,... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-81098 json | The Telnyx MCP server exposed its HTTP transport on every interface and did not require a caller credential. packages/mcp-ser... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81036 json | Stalwart Mail Server does not compare an OAuth redirect target against any registered destination in its default configuratio... | Not Provided | 2026-08-26 | 2026-08-29 |
| CVE-2026-79717 json | A server-side request forgery (SSRF) vulnerability was found in galaxy_ng, the Ansible Galaxy server plugin for Pulp. An auth... | Not Provided | 2026-08-25 | 2026-08-27 |
| CVE-2026-78434 json | A flaw has been found in Faveo Helpdesk up to 2.0.3. This impacts the function FormController::post_ticket_reply of the file ... | Not Provided | 2026-08-24 | 2026-08-25 |
| CVE-2026-78255 json | The HTTP media server running on DJI drones serves stored photos and videos through the `/v2` endpoint without authenticating... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-77775 json | Headroom's LLM proxy lets a client choose the upstream destination with the x-headroom-base-url request header. _resolve_open... | Not Provided | 2026-08-21 | 2026-08-21 |
| CVE-2026-77680 json | An algorithmic complexity flaw exists in libsoup's HTTP Range header processing that persists after the CVE-2025-32907 fix. ... | Not Provided | 2026-08-25 | 2026-08-26 |
| CVE-2026-77358 json | cpp-httplib is a C++ header-only HTTP/HTTPS library. In versions 0.33.0 through 0.50.0, the TLS-enabled WebSocket client free... | Not Provided | 2026-08-28 | 2026-08-31 |