Vulnerabilidades en benoitc
13 resultadosAnálisis Vexday
O fornecedor benoitc apresenta um padrão recente de vulnerabilidades, com 10 das 12 CVEs publicadas nos últimos 90 dias, indicando descobertas ativas em seus produtos. Nenhuma vulnerabilidade está sob exploração ativa confirmada (KEV) e não há críticas de severidade máxima, reduzindo o risco imediato. A fraqueza dominante (CWE-400: Uncontrolled Resource Consumption) sugere problemas de resiliência que exigem monitoramento, mas o perfil geral permanece de risco moderado.
CVE-2024-1135HIGHHTTP Request Smuggling in benoitc/gunicornEPSS 3.0%CVE-2026-47073HIGHUnbounded memory consumption in WebSocket client in hackneyEPSS 0.9%CVE-2024-6827HIGHHTTP Request Smuggling in benoitc/gunicornEPSS 0.8%CVE-2026-47066HIGHInfinite loop in Alt-Svc header parser in hackneyEPSS 0.8%CVE-2026-47071HIGHSOCKS5 TLS upgrade ignores caller timeout in hackneyEPSS 0.8%CVE-2026-47067HIGHAtom table exhaustion via unrecognized URL schemes in hackneyEPSS 0.8%CVE-2026-47077HIGHUnbounded body accumulation in HTTP/3 response loop in hackneyEPSS 0.7%CVE-2026-47072MEDIUMCRLF injection in WebSocket upgrade request in hackneyEPSS 0.5%CVE-2026-47075MEDIUMCR/LF injection in query parameter in hackneyEPSS 0.5%CVE-2026-47069LOWCRLF injection in cookie domain/path options in hackneyEPSS 0.4%CVE-2026-47070MEDIUMHTTP/3 redirect handler leaks Authorization and Cookie headers to cross-origin redirect target in hackneyEPSS 0.4%CVE-2026-47076MEDIUMSSRF allowlist bypass via percent-encoded host in hackneyEPSS 0.2%CVE-2026-49457CRITICALQUIC has Broken TLS verificationEPSS 0.1%