18 Total CVEs
18 AI Analyzed
0 CISA KEV
0 Critical

Profile

0% ended up actively exploited 0 of 18 added to CISA KEV
0% rated critical (CVSS 9.0+) 0 critical, 18 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

16 CVEs in the last 12 months

Products

  • HTTP Server4
  • h2o1
  • Camel embedded1

3 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-18 of 18 CVEs
CVE-2026-55213
Analyzed
7.5
HTTP h2o

h2o is an HTTP server with support for HTTP/1

2026-07-12
CVE-2026-42043
Analyzed
7.2
HTTP Multiple Products

Axios is a promise based HTTP client for the browser and Node

2026-04-25
CVE-2026-42035
Analyzed
7.4
HTTP Multiple Products

Axios is a promise based HTTP client for the browser and Node

2026-04-25
CVE-2026-42033
Analyzed
7.4
HTTP Multiple Products

Axios is a promise based HTTP client for the browser and Node

2026-04-25
CVE-2026-40022
Analyzed
8.2
HTTP Camel embedded

When authentication is enabled on the Apache Camel embedded HTTP server or embedded management server (camel-platform-http-main) and a non-root contex...

2026-04-28
CVE-2026-34059
Analyzed
7.5
HTTP HTTP Server

Buffer Over-read vulnerability in Apache HTTP Server

2026-05-05
CVE-2026-30834
Analyzed
7.5
HTTP Multiple Products

PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser

2026-03-08
CVE-2026-29169
Analyzed
7.5
HTTP HTTP Server

A NULL pointer dereference in mod_dav_lock in Apache HTTP Server 2

2026-05-05
CVE-2026-29168
Analyzed
7.3
HTTP HTTP Server

Allocation of Resources Without Limits or Throttling vulnerability in Apache HTTP Server's  mod_md via OCSP response data

2026-05-06
CVE-2026-25639
Analyzed
7.5
HTTP Multiple Products

Axios is a promise based HTTP client for the browser and Node

2026-02-10
CVE-2026-24469
Analyzed
7.5
HTTP Multiple Products

C++ HTTP Server is an HTTP/1

2026-01-24
CVE-2026-23918
Analyzed
8.8
HTTP HTTP Server

Double Free and possible RCE vulnerability in Apache HTTP Server with the HTTP/2 protocol

2026-05-05
CVE-2025-69223
Analyzed
7.5
HTTP Multiple Products

AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python

2026-01-06
CVE-2025-58754
Analyzed
7.5
HTTP Multiple Products

Axios is a promise based HTTP client for the browser and Node

2025-09-12
CVE-2025-41368
Analyzed
8.1
HTTP Multiple Products

Problem in the Small HTTP Server v3

2026-03-28
CVE-2025-41359
Analyzed
7.8
HTTP Multiple Products

Vulnerability related to an unquoted service path in Small HTTP Server 3

2026-03-28
CVE-2025-40920
Analyzed
8.6
HTTP Multiple Products

Catalyst::Authentication::Credential::HTTP versions 1

2025-08-11
CVE-2019-25352
Analyzed
7.5
HTTP Multiple Products

Crystal Live HTTP Server 6

2026-02-19