CVE-2026-66753
Published Jul 28, 2026tiny-http through 0.12.0 contains an HTTP header injection vulnerability that allows attackers to inject carriage return (0x0D) and line feed (0x0A) bytes into HTTP header values…
- evidence mentions
- 2
- Buzz score
- 17.5