Civetweb Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    1
    Critical Level Threats
    3
    High Level Threats
    2
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-29035

    CivetWeb Heap/Stack Buffer Overflow via WebSocket permessage-deflate Decompression

    Last Modified: Aug 14, 2026
    Published: Aug 11, 2026

    CVE-2026-5789

    Search path without quotes in CivetWeb

    Last Modified: Apr 22, 2026
    Published: Apr 21, 2026

    CVE-2025-9648

    Denial of Service in CivetWeb

    Last Modified: Apr 15, 2026
    Published: Sep 29, 2025

    CVE-2025-55763

    Buffer Overflow in the URI parser of CivetWeb 1.14 through 1.16 (latest) allows a remote attacker to achieve remote code execution via a crafted HTTP request. This vulnerability is triggered during request processing and may allow an attacker to corrupt heap memory, potentially leading to denial of service or arbitrary code execution.

    Last Modified: Sep 09, 2025
    Published: Aug 29, 2025

    CVE-2020-27304

    civetweb: directory traversal when using the built-in example HTTP form-based file upload mechanism via the mg_handle_form_request API

    Last Modified: Nov 21, 2024
    Published: Oct 18, 2021
    Items Per Page
    Civetweb_Project Vulnerabilities & Security CVEs | CVE-DB