VendorsLiteSpeedTechopenlitespeedany version
Vulnerabilities

LiteSpeedTech LiteSpeed Technologies OpenLiteSpeed any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2020-5519
The WebAdmin Console in OpenLiteSpeed before v1.6.5 does not strictly check request URLs, as demonstrated by the "Server Configuration > External App" screen.
Published 2020-01-06 · Modified
9.8EPSS 0.012
CVE-2022-0073
Authenticated Remote Code Execution in OpenLiteSpeed Web Server
Published 2022-10-27 · Modified
8.8EPSS 0.088
CVE-2022-0074
Privilege Escalation in OpenLiteSpeed Web Server
Published 2022-10-27 · Modified
8.8EPSS 0.012
CVE-2026-31386
OpenLiteSpeed and LSWS Enterprise provided by LiteSpeed Technologies contain an OS command injection vulnerability. An arbitrary OS command may be executed by an attacker with the administrative privilege.
Published 2026-03-16 · Analyzed
8.6EPSS 0.015
CVE-2015-3890
Use-after-free vulnerability in Open Litespeed before 1.3.10.
Published 2017-09-20 · Modified
7.5EPSS 0.011
CVE-2025-54939
LiteSpeed QUIC (LSQUIC) Library before 4.3.1 has an lsquic_engine_packet_in memory leak.
Published 2025-08-01 · Analyzed
7.5EPSS 0.008
CVE-2023-40518
LiteSpeed OpenLiteSpeed before 1.7.18 does not strictly validate HTTP request headers.
Published 2023-08-14 · Modified
7.5EPSS 0.007
CVE-2018-19792
The server in LiteSpeed OpenLiteSpeed before 1.5.0 RC6 allows local users to cause a denial of service (buffer overflow) or possibly have unspecified other impact by creating a symlink through which the openlitespeed program can be invoked with a long command name (involving ../ characters), which is mishandled in the LshttpdMain::getServerRootFromExecutablePath function.
Published 2018-12-03 · Modified
6.7EPSS 0.004
CVE-2018-19791
The server in LiteSpeed OpenLiteSpeed before 1.5.0 RC6 does not correctly handle requests for byte sequences, allowing an attacker to amplify the response size by requesting the entire response body repeatedly, as demonstrated by an HTTP Range header value beginning with the "bytes=0-,0-" substring.
Published 2018-12-03 · Modified
6.5EPSS 0.012
CVE-2022-0072
Directory Traversal in OpenLiteSpeed Web Server
Published 2022-10-27 · Modified
5.8EPSS 0.010
CVE-2024-31617
OpenLiteSpeed before 1.8.1 mishandles chunked encoding.
Published 2024-05-22 · Analyzed
5.3EPSS 0.004