Vulnerabilities

Summary — last 7 days

New vulnerabilities2,619▼ 461 vs. last week
Critical / high1,277▼ 72 vs. last week
New active exploitation (KEV)5▼ 3 vs. last week
Unscored (no CVSS)235▼ 274 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
AnalyzedHigh (7.5)0.25%—Junkurihara Httpsig-hyper2/19/20266/17/2026
httpsig-hyper is a hyper extension for http message signatures. An issue was discovered in `httpsig-hyper` prior to version 0.0.23 where Digest header verification could incorrectly succeed due to misuse of Rust's `matches!` macro. Specifically, the comparison `if matches!(digest, _expected_digest)` treated…