VendorsChendotjslotos_webserverall versions
Vulnerabilities

Chendotjs Lotos WebServer

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2024-22088
Lotos WebServer through 0.1.1 (commit 3eb36cc) has a use-after-free in buffer_avail() at buffer.h via a long URI, because realloc is mishandled.
Published 2024-01-05 · Modified
9.8EPSS 0.007
CVE-2024-24263
Lotos WebServer v0.1.1 was discovered to contain a Use-After-Free (UAF) vulnerability via the response_append_status_line function at /lotos/src/response.c.
Published 2024-02-05 · Modified
7.5EPSS 0.007