Vulnerabilities > Typelevel > Http4S > High

DATE CVE VULNERABILITY TITLE RISK
2021-02-02 CVE-2021-21294 Allocation of Resources Without Limits or Throttling vulnerability in Typelevel Http4S
Http4s (http4s-blaze-server) is a minimal, idiomatic Scala interface for HTTP services.
network
low complexity
typelevel CWE-770
7.5
2020-03-25 CVE-2020-5280 Path Traversal vulnerability in Typelevel Http4S
http4s before versions 0.18.26, 0.20.20, and 0.21.2 has a local file inclusion vulnerability.
network
low complexity
typelevel CWE-22
7.5