nghttp2
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 12, 2016 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →ngtcp2 has a qlog transport parameter serialization stack buffer overflow
nghttp2 Denial of service: Assertion failudue to the missing state validation
nghttp2 Denial of service: Assertion failure due to the missing state validation
New HTTP/2 DoS attack can crash web servers with a single connection
Reading unbounded number of HTTP/2 CONTINUATION frames to cause excessive CPU usage
CVE-2023-44487: HTTP/2 Rapid Reset attack against many implementations
- Rapid Reset HTTP/2 vulnerability
Envoy vulnerable to HTTP/2 memory leak in nghttp2 codec
Denial of service in nghttp2
Monitor nghttp2 in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.