ZeroHour

CVE-2020-35863

CVSS 3.1
9.8 critical
EPSS
3%p86
Published
()
Modified
Description

An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.

Vendors
hyper
Products
hyper
Weakness
CWE-444
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.