Skip to content
Noroxi

ithewei records

3 published records for vendor ithewei.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

3 records
  • All versions of the package ithewei/libhv are vulnerable to Cross-site Scripting (XSS) such that when a file with a name containing a malici

    MediumCVSS 6.1No exploitEPSS 0%

    ithewei · libhvSep 29, 2023

  • All versions of the package ithewei/libhv are vulnerable to HTTP Response Splitting when untrusted user input is used to build headers value

    MediumCVSS 6.1No exploitEPSS 0%

    ithewei · libhvSep 29, 2023

  • All versions of the package ithewei/libhv are vulnerable to CRLF Injection when untrusted user input is used to set request headers.

    MediumCVSS 5.3No exploitEPSS 0%

    ithewei · libhvSep 29, 2023