CVE Feed

    Dashboard / CVE / CVE-2025-52887

    CVE-2025-52887

    cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. In version 0.21.0, when many http headers fields are passed in, the library does not limit the number of headers, and the memory associated with the headers will not be released when the connection is disconnected. This leads to potential exhaustion of system memory and results in a server crash or unresponsiveness. Version 0.22.0 contains a patch for the issue.

    Published:Jun 26, 2025
    Last Modified:Aug 6, 2025
    EPS:Jun 26, 2025
    EPSS Score:0.00081
    CVSS Score:7.5

    Affected Products

    Vendor
    Yhirose
    Product
    Cpp-httplib

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High