All 3 CVE vulnerabilities found in @fastify/http-proxy, with AI-generated Chinese analysis, references, and POCs.
Vendor: @fastify/http-proxy
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-85124 | @fastify/http-proxy vulnerable to prefix escape via backslash dot-segments CWE-22 | 7.5 | High | 2026-09-03 |
| CVE-2026-16117 | @fastify/http-proxy vulnerable to prefix escape via URL-encoded characters CWE-20 | 10.0 | Critical | 2026-07-18 |
| CVE-2026-15631 | @fastify/http-proxy vulnerable to prefix escape via WebSocket path traversal CWE-22 | 8.7 | High | 2026-07-18 |
All 3 known CVE vulnerabilities affecting @fastify/http-proxy with full Chinese analysis, references, and POCs where available.