← Back

Tiny Http Project

tiny-http_project

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Tiny Http
tiny-http

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Fedoraproject
Tiny Http Project
2Fedora
Tiny Http
Jun 17, 2026
Dec 31, 2020
N/A· v4
6.5 MEDIUM· v3
6.4 MEDIUM· v2
An issue was discovered in the tiny_http crate through 2020-06-16 for Rust. HTTP Request smuggling can occur via a malformed Transfer-Encoding header.
1Tiny Http Project
1Tiny Http
Nov 21, 2024
Jun 7, 2018
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
tiny-http is a simple http server. tiny-http is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.