7.5

CVSS3.1

CVE-2026-28435 - Payload size limit bypass via gzip decompression in ContentReader (streaming) allows oversized requ…

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.35.0, cpp-httplib (httplib.h) does not enforce Server::set_payload_max_length() on the decompressed request body when using HandlerWithContentReader (streaming ContentReader) with Content-Encoding: gzip (or…

📅 Published: March 4, 2026, 7:36 p.m. 🔄 Last Modified: March 4, 2026, 8:39 p.m.

5.3

CVSS3.1

CVE-2026-28434 - cpp-httplib's default exception handler leaks e.what() to clients via EXCEPTION_WHAT response header

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.35.0, when a request handler throws a C++ exception and the application has not registered a custom exception handler via set_exception_handler(), the library catches the exception and writes its message di…

📅 Published: March 4, 2026, 7:34 p.m. 🔄 Last Modified: March 4, 2026, 7:34 p.m.

5.9

CVSS4.0

CVE-2026-28427 - OpenDeck affected by path traversal allows arbitrary file read

OpenDeck is Linux software for your Elgato Stream Deck. Prior to 2.8.1, the service listening on port 57118 serves static files for installed plugins but does not properly sanitize path components. By including ../ sequences in the request path, an attacker can traverse outside the intended directo…

📅 Published: March 4, 2026, 7:30 p.m. 🔄 Last Modified: March 4, 2026, 7:30 p.m.

0.0

CVE-2026-3545 -

Insufficient data validation in Navigation in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

📅 Published: March 4, 2026, 7:24 p.m. 🔄 Last Modified: March 4, 2026, 7:24 p.m.

0.0

CVE-2026-3544 -

Heap buffer overflow in WebCodecs in Google Chrome prior to 145.0.7632.159 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)

📅 Published: March 4, 2026, 7:24 p.m. 🔄 Last Modified: March 4, 2026, 7:24 p.m.
Load More Vulnerability
avatar

Mehmet Ince

@mdisec

CVE stats coming here

avatar

Nuri Çilengir

@ncilengir

CVE stats coming here

avatar

@aydinnyunus

CVE stats coming here

avatar

Onurcan Genç

@onurcangnc

CVE stats coming here

avatar

Seyit Sigirci

@h3xecute

CVE stats coming here

avatar

Ali İltizar

@iltosec

CVE stats coming here

avatar

@b3rsec

CVE stats coming here

avatar

@furkank

CVE stats coming here

avatar

kutaysec

@kutaysec

CVE stats coming here