Vulnerabilities > Crowcpp > Crow > 1.0.4

DATE CVE VULNERABILITY TITLE RISK
2022-08-22 CVE-2022-38667 Use After Free vulnerability in Crowcpp Crow
HTTP applications (servers) based on Crow through 1.0+4 may allow a Use-After-Free and code execution when HTTP pipelining is used.
network
low complexity
crowcpp CWE-416
critical
9.8
2022-08-22 CVE-2022-38668 Use of Uninitialized Resource vulnerability in Crowcpp Crow 1.0+4
HTTP applications (servers) based on Crow through 1.0+4 may reveal potentially sensitive uninitialized data from stack memory when fulfilling a request for a static file smaller than 16 KB.
network
low complexity
crowcpp CWE-908
7.5