You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
mend-for-github-combot
changed the title
CVE-2020-35863 (Medium) detected in hyper-0.12.25.crate
CVE-2020-35863 (High) detected in hyper-0.12.25.crate
Feb 15, 2021
CVE-2020-35863 - High Severity Vulnerability
Vulnerable Library - hyper-0.12.25.crate
A fast and correct HTTP library.
Library home page: https://crates.io/api/v1/crates/hyper/0.12.25/download
Dependency Hierarchy:
Vulnerability Details
An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
Publish Date: 2020-12-31
URL: CVE-2020-35863
CVSS 2 Score Details (7.5)
Base Score Metrics not available
The text was updated successfully, but these errors were encountered: