Tiny-http Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    0
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-66753

    tiny-http 0.12.0 HTTP Response Splitting via Header Injection

    Last Modified: Aug 14, 2026
    Published: Jul 28, 2026

    CVE-2026-66752

    tiny-http 0.12.0 HTTP Request Smuggling via Transfer-Encoding Handling

    Last Modified: Aug 14, 2026
    Published: Jul 28, 2026

    CVE-2020-35884

    An issue was discovered in the tiny_http crate through 2020-06-16 for Rust. HTTP Request smuggling can occur via a malformed Transfer-Encoding header.

    Last Modified: Nov 21, 2024
    Published: Dec 31, 2020

    CVE-2017-16097

    tiny-http is a simple http server. tiny-http is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url.

    Last Modified: Nov 21, 2024
    Published: Jun 07, 2018
    Items Per Page
    Tiny-Http_Project Vulnerabilities & Security CVEs | CVE-DB