📦 Http4s

by Typelevel

🔍 What is Http4s?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-39185

CRITICAL CVSS 9.1 Sep 1, 2021

This CVE describes a Cross-Origin Resource Sharing (CORS) vulnerability in http4s, a Scala HTTP library. It allows attackers to perform origin reflection attacks and Null Origin attacks, potentially e...

CVE-2021-21294

HIGH CVSS 7.5 Feb 2, 2021

CVE-2021-21294 is a denial-of-service vulnerability in http4s-blaze-server where the underlying blaze-core library accepts connections without bounds, allowing attackers to exhaust OS socket resources...