Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
npm/@hono/node-server — 4 CVEs · VulnScope
pkg:npm/
@hono/node-server
4 total CVEs
HIGH
2
MEDIUM
2
✅ Check your installed version
Check
All known vulnerabilities
HIGH
7.5
CVE-2026-29087
@hono/node-server has authorization bypass for protected static paths via encoded slashes in Serve Static Middleware
from 0, < 1.19.10
HIGH
7.5
CVE-2024-32652
@hono/node-server has Denial of Service risk when receiving Host header that cannot be parsed
>= 1.3.0, < 1.10.1
MEDIUM
5.3
CVE-2026-39406
@hono/node-server: Middleware bypass via repeated slashes in serveStatic
from 0, < 1.19.13
MEDIUM
5.3
@hono/node-server cannot handle "double dots" in URL
>= 1.3.0, < 1.4.1
CVE-2024-23340