VendorsActixactix-httpall versions
Vulnerabilities

Actix Actix-http

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2021-38512
An issue was discovered in the actix-http crate before 3.0.0-beta.9 for Rust. HTTP/1 request smuggling (aka HRS) can occur, potentially leading to credential disclosure.
Published 2021-08-10 · Modified
7.5EPSS 0.018
CVE-2020-35901
An issue was discovered in the actix-http crate before 2.0.0-alpha.1 for Rust. There is a use-after-free in BodyStream.
Published 2020-12-31 · Modified
7.5EPSS 0.014