CRITICAL9.8CVE-2020-35863Flaw in hyper allows request smuggling by sending a body in GET requests >= 0.11.0, < 0.12.34
CRITICAL9.8CVE-2020-35863Flaw in hyper allows request smuggling by sending a body in GET requests >= 0.11.0, < 0.12.34
MEDIUM5.9CVE-2021-32714Integer overflow in `hyper`'s parsing of the `Transfer-Encoding` header leads to data loss from 0, < 0.14.10
MEDIUM5.3headers containing newline characters can split messages
>= 0.10.0, < 0.10.2
MEDIUM5.3headers containing newline characters can split messages
>= 0.0.0-0, < 0.9.18, >= 0.10.0, < 0.10.2
MEDIUM4.8Multiple Transfer-Encoding headers misinterprets request payload
>= 0.14.0, < 0.14.3
MEDIUM4.8HTTPS MitM vulnerability due to lack of hostname verification
from 0, < 0.9.4
MEDIUM4.8HTTPS MitM vulnerability due to lack of hostname verification
>= 0.0.0-0, < 0.9.4
LOW3.1Lenient `hyper` header parsing of `Content-Length` could allow request smuggling
from 0, < 0.14.10