CVE
Severity
CVSS
Risk
Published
Description
Impact
CVE-2026-43970
high
—
8.0
14d ago
cowlib: Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame
debian
CVE-2026-7790
high
7.5
7.5
16d ago
cowlib cow_http_te module: Uncontrolled Resource Consumption vulnerability allows Excessive Allocation
debian
CVE-2026-43968
medium
4.0
4.0
16d ago
ninenines cowlib: Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability allows SSE event splitting and injection via unvalidated field values
debian
CVE-2026-43969
low
3.2
3.2
16d ago
cowlib: Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1
debian