All 3 CVE vulnerabilities found in @fastify/busboy, with AI-generated Chinese analysis, references, and POCs.
Vendor: @fastify/busboy
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-74866 | @fastify/busboy vulnerable to CRLF injection via multipart Content-Disposition filename and name CWE-93 | 5.8 | Medium | 2026-08-21 |
| CVE-2026-19484 | @fastify/busboy vulnerable to Denial of Service via oversized multipart boundary CWE-835 | 7.5 | High | 2026-08-13 |
| CVE-2026-19481 | @fastify/busboy vulnerable to Denial of Service via prototype-named multipart part header CWE-754 | 7.5 | High | 2026-08-13 |
All 3 known CVE vulnerabilities affecting @fastify/busboy with full Chinese analysis, references, and POCs where available.