Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.1
CVE-2023-26142
All versions of the package crow are vulnerable to HTTP Response Splitting when untrusted user input is used to build header values. Header values ar…
Crow
No fix yet
CRITICAL 9.8
CVE-2022-38667
HTTP applications (servers) based on Crow through 1.0+4 may allow a Use-After-Free and code execution when HTTP pipelining is used. The HTTP parser s…
Crow
after 1.0
HIGH 7.5
CVE-2022-38668
HTTP applications (servers) based on Crow through 1.0+4 may reveal potentially sensitive uninitialized data from stack memory when fulfilling a reque…
Crow
Patch available
CRITICAL 9.8
CVE-2022-34970
Crow before 1.0+4 has a heap-based buffer overflow via the function qs_parse in query_string.h. On successful exploitation this vulnerability allows …
Crow
1.0+
MEDIUM 6.1
CVE-2021-23824
This affects the package Crow before 0.3+4. When using attributes without quotes in the template, an attacker can manipulate the input to introduce a…
Crow
0.3+
HIGH 7.5
CVE-2021-23514
This affects the package Crow before 0.3+4. It is possible to traverse directories to fetch arbitrary files from the server.
Crow
0.3+