Vulnérabilités
Aggrégat CVE / GHSA / KEV / OSV — filtrage par étiquette et catégorie.
| ID | Titre | |
|---|---|---|
| CVE-2026-16117 |
|
Vulnérabilité dans fastify (CVE-2026-16117)
vulnérabilité dans fastify (CVE-2026-16117). Des informations confidentielles peuvent être exposées.
|
| CVE-2026-15631 |
|
Impact: @fastify/http-proxy versions from 9.4.0 up to and including 11.5.0 fail to validate the resolved WebSocket destination path against the configured rewrite prefix. The WebSocket routing path in...
Impact: @fastify/http-proxy versions from 9.4.0 up to and including 11.5.0 fail to validate the resolved WebSocket destination path against the configured rewrite prefix. The WebSocket routing path in WebSocketProxy.findUpstream resolves the destination via the WHATWG URL constructor, which collapse...
|
| CVE-2026-33805 |
|
Vulnérabilité dans @fastify/reply-from (CVE-2026-33805)
vulnérabilité dans @fastify/reply-from (CVE-2026-33805). Les données peuvent être altérées par des attaquants. Exploitable via ``Connection``. Atténuation : mise à jour vers `12.6.2` ou plus.
|