Llhttp
6 known vulnerabilities
Top Products
The llhttp parser in the http module in Node v18.7.0 does not correctly handle header fields that are not terminated wit
The llhttp parser <v14.20.1, <v16.17.1 and <v18.9.1 in the http module in Node.js does not correctly handle multi-line T
The llhttp parser <v14.20.1, <v16.17.1 and <v18.9.1 in the http module in Node.js does not strictly use the CRLF sequenc
The llhttp parser <v14.20.1, <v16.17.1 and <v18.9.1 in the http module in Node.js does not correctly parse and validate
The parser in accepts requests with a space (SP) right after the header name before the colon. This can lead to HTTP Req
The parse function in llhttp < 2.1.4 and < 6.0.6. ignores chunk extensions when parsing the body of chunked requests. Th
Frequently Asked Questions
How many CVEs affect Llhttp?
Llhttp has 6 CVE records in our database, including 0 critical and 0 high severity vulnerabilities.
What are the most severe Llhttp vulnerabilities?
Llhttp has 0 critical severity (CVSS 9.0+) and 0 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Llhttp vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Llhttp products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Llhttp Vulnerabilities
CyberStrike scans your infrastructure for Llhttp vulnerabilities and provides real-time remediation guidance.
Get Started