CVE-2025-59410

LOW3.7EPSS 0.03%

DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly

Published: 9/17/2025Modified: 3/3/2026
Also known as:GHSA-mcvp-rpgg-9273GO-2025-3974

Description

DragonFly's tiny file download uses hard coded HTTP protocol in d7y.io/dragonfly

Affected packages (4)

CVSS scores

SourceVersionSeverityVector
osvCVSS 4.0CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P
osvCVSS 3.1LOW3.7CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

References (5)