Known vulnerabilities in Fastify-http-proxy
Vendor:
fastify.io
Software:
Fastify-http-proxy
Software CPE:
cpe:2.3:a:fastify.io:fastify-http-proxy:*:*:*:*:*:*:*:*
Website:
https://www.fastify.io/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
8.1.0
8.0.2
8.0.1
8.0.0
7.1.0
7.0.0
6.2.2
6.2.1
6.2.0
6.1.0
6.0.1
6.0.0
5.0.0
4.4.0
4.3.0
4.2.0
4.1.0
4.0.4
4.0.3
4.0.2
4.0.1
4.0.0
3.2.0
3.1.0
3.0.0
2.3.0
2.2.0
2.1.0
2.0.3
2.0.2
2.0.1
1.0.0
0.8.0
0.7.0
0.6.0
0.4.3
0.4.2
0.4.1
0.4.0
0.3.0
0.2.1
0.2.0
0.1.1
11.6.2
11.6.1
4.3.1
11.6.0
11.5.0
11.4.4
11.4.3
11.4.2
11.4.1
11.4.0
11.3.0
11.2.0
11.1.1
11.1.0
11.0.1
11.0.0
10.0.2
10.0.1
10.0.0
9.5.0
9.4.0
9.3.0
9.2.1
9.2.0
9.1.0
9.0.0
8.4.0
8.3.0
7.2.0
8.2.3
8.2.2
8.2.1
8.2.0
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU147354 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-85124 |
CWE-22 | Medium | 11.6.2 | 08.09.2026 |
SB2026090825 |
||
| #VU138403 - Improper input validation CVE-2026-33805 |
CWE-20 | Medium | 11.4.4 | 20.07.2026 |
SB2026072013 |
||
| #VU138402 - Improper input validation CVE-2026-16117 |
CWE-20 | High | 11.6.0 | 20.07.2026 |
SB2026072012 |
||
| #VU138401 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-15631 |
CWE-22 | High | 11.6.0 | 20.07.2026 |
SB2026072012 |
||
| #VU138400 - Improper Access Control CVE-2021-21322 |
CWE-284 | High | 4.3.1, 7.2.0 | 23.02.2021 |
SB2021022330 SB2021041399 |