Actix-Http
Actix · 2 CVEs
CVE-2021-38512
HIGH
rust-actix-http: potential request smuggling capabilities due to lack of input validation
Aug 10, 2021
CVE-2020-35901
HIGH
An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream.
Dec 31, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-38512 | rust-actix-http: potential request smuggling capabilities due to lack of input validation | HIGH | 1.81% | Aug 10, 2021 |
| CVE-2020-35901 | An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream. | HIGH | 1.42% | Dec 31, 2020 |
Showing 1 to 2 of 2 CVEs