Browse all 2 CVE security advisories affecting http4k. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-53659 | http4k: Unbounded gzip decompression in `ServerFilters.GZip` / `RequestFilters.GunZip` allowed memory-exhaustion DoS — http4k CWE-409 | 7.5 | High | 2026-09-14 |
| CVE-2024-55875 | http4k has a potential XXE (XML External Entity Injection) vulnerability — http4k CWE-200 | 9.8 | Critical | 2024-12-12 |
This page lists every published CVE security advisory associated with http4k. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.