h3(npm 包)版本 ≤ 2.0.1-rc.14 中的 函数存在路径遍历漏洞。在 Node.js 部署环境中, 未进行规范化处理,导致百分号编码的点段(如 )在被传入 解码为 序列时未经过净化处理。未认证的远程攻击者可以通过向由 提供的端点发送精心构造的请求,读取目标静态目录之外的任意文件。该漏洞已在版本 1.15.6 和 2.0.1-rc.15 中修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86250 | 7.5 HIGH | h3 before 2.0.1-rc.18 Denial of Service via Unbounded Chunked Cookie |
| CVE-2026-86251 | 5.9 MEDIUM | h3 before 1.15.9 Path Traversal via Double Decoding |
| CVE-2026-86205 | 5.4 MEDIUM | h3 before 2.0.1-rc.18 Open Redirect via redirectBack() |
| CVE-2026-86252 | 5.3 MEDIUM | h3 before 1.15.9 SSE Event Injection via Carriage Return |
No comments yet