Known vulnerabilities in llhttp

Software: llhttp
Software CPE: cpe:2.3:a:node_js_foundation:llhttp:*:*:*:*:*:nodejs:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 5.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting llhttp llhttp is affected by 4 known vulnerabilities: 4 medium Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88176 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2024-27982
CWE-444 Medium
No
No
8.1.2 05.04.2024 SB2024040526
SB2024040851
SB2024040852
and 53 more
#VU67850 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-35256
CWE-444 Medium
No
No
6.0.10 03.10.2022 SB2022100347
SB2022100401
SB2022100402
and 50 more
#VU59234 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-22960
CWE-444 Medium
No
No
2.1.4, 6.0.6 05.01.2022 SB2022010523
SB2022010524
SB2022042806
and 40 more
#VU59233 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-22959
CWE-444 Medium
No
No
2.1.4, 6.0.6 05.01.2022 SB2022010523
SB2022010524
SB2022011841
and 43 more