Package impact
Hex / cowlib
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-43970 | high | — | 8.0 | 15d ago | cowlib: Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame | |
| CVE-2026-7790 | high | 7.5 | 7.5 | 17d ago | cowlib cow_http_te module: Uncontrolled Resource Consumption vulnerability allows Excessive Allocation | |
| CVE-2026-43968 | medium | 4.0 | 4.0 | 17d ago | ninenines cowlib: Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability allows SSE event splitting and injection via unvalidated field values | |
| CVE-2026-43969 | low | 3.2 | 3.2 | 17d ago | cowlib: Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1 |