request-1276

Direct Vulnerabilities

Known vulnerabilities in the request-1276 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
GHSA-6w46-j5rx-g56g

<0.28.0-r0
  • L
Creation of Temporary File in Directory with Incorrect Permissions

<0.28.0-r0
  • L
GHSA-2vrm-gr82-f7m5

<0.27.1-r2
  • L
GHSA-966j-vmvw-g2g9

<0.27.1-r2
  • M
HTTP Response Splitting

<0.27.1-r2
  • L
GHSA-p423-j2cm-9vmq

<0.27.1-r2
  • M
Information Exposure

<0.27.1-r2
  • M
Improper Input Validation

<0.27.1-r2
  • L
GHSA-mwh4-6h8g-pg8w

<0.27.1-r2
  • L
HTTP Response Splitting

<0.27.1-r2
  • L
GHSA-hcc4-c3v8-rx92

<0.27.1-r2
  • C
Out-of-Bounds

<0.27.1-r2
  • M
HTTP Response Splitting

<0.27.1-r2
  • M
Allocation of Resources Without Limits or Throttling

<0.27.1-r2
  • L
GHSA-c427-h43c-vf67

<0.27.1-r2
  • L
GHSA-63hf-3vf5-4wqf

<0.27.1-r2
  • L
GHSA-m5qp-6w8w-w647

<0.27.1-r2
  • L
Resource Exhaustion

<0.27.1-r2
  • H
Directory Traversal

<0.27.1-r2
  • H
Allocation of Resources Without Limits or Throttling

<0.27.1-r2
  • L
GHSA-w2fm-2cpv-w7v5

<0.27.1-r2
  • L
GHSA-3wq7-rqq7-wx6j

<0.27.1-r2
  • L
Allocation of Resources Without Limits or Throttling

<0.27.1-r2
  • L
GHSA-p998-jp59-783m

<0.27.1-r2
  • L
CVE-2026-1703

<0.27.1-r1
  • L
GHSA-6vgw-5pg2-w6jp

<0.27.1-r1
  • M
Directory Traversal

<0.27.1-r1
  • L
GHSA-38jv-5279-wg99

<0.27.1-r1
  • L
GHSA-2xpw-w6gg-jr37

<0.27.1-r1
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<0.27.1-r1
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<0.27.1-r1
  • L
Resource Exhaustion

<0.27.1-r1
  • L
GHSA-5239-wwwm-4pmq

<0.27.1-r1
  • H
Allocation of Resources Without Limits or Throttling

<0.27.1-r1
  • L
GHSA-8rrh-rw8j-w5fx

<0.27.1-r1
  • L
GHSA-gm62-xv2j-4w53

<0.27.1-r1
  • L
GHSA-4xh5-x5gv-qwph

<0.27.1-r1
  • L
GHSA-gc5v-m9x4-r6x2

<0.27.1-r1
  • M
Insecure Temporary File

<0.27.1-r1
  • L
CVE-2025-8869

<0.27.1-r1
  • L
GHSA-5pwr-322w-8jr4

<0.27.0-r6
  • L
GHSA-vp96-hxj8-p424

<0.27.0-r6
  • L
GHSA-752w-5fwx-jx9f

<0.27.0-r6
  • M
Not Failing Securely ('Failing Open')

<0.27.0-r6
  • L
Insufficient Verification of Data Authenticity

<0.27.0-r6
  • L
GHSA-jr27-m4p2-rc6r

<0.27.0-r6
  • L
Uncontrolled Recursion

<0.27.0-r6
  • C
Buffer Overflow

<0.27.0-r6
  • M
CVE-2026-26007

<0.27.0-r5
  • L
GHSA-7gcm-g887-7qv7

<0.27.0-r5
  • L
GHSA-r6ph-v2qm-q3c2

<0.27.0-r5
  • H
CVE-2026-0994

<0.27.0-r5
  • L
Link Following

<0.27.0-r4
  • L
GHSA-597g-3phw-6986

<0.27.0-r4
  • L
Directory Traversal

<0.27.0-r4
  • L
GHSA-58pv-8j8x-9vj2

<0.27.0-r4
  • L
GHSA-jm66-cg57-jjv5

<0.27.0-r3
  • H
Deserialization of Untrusted Data

<0.27.0-r3
  • L
GHSA-63vm-454h-vhhq

<0.27.0-r3
  • L
Allocation of Resources Without Limits or Throttling

<0.27.0-r3
  • L
Link Following

<0.27.0-r2
  • L
GHSA-qmgc-5h2g-mvrw

<0.27.0-r2
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0.27.0-r1
  • L
GHSA-54jq-c3m8-4m76

<0.27.0-r1
  • L
GHSA-6mq8-rvhq-8wgg

<0.27.0-r1
  • M
Logging of Excessive Data

<0.27.0-r1
  • L
Improper Handling of Highly Compressed Data (Data Amplification)

<0.27.0-r1
  • L
GHSA-fh55-r93g-j68g

<0.27.0-r1
  • L
GHSA-mqqc-3gqh-h2x8

<0.27.0-r1
  • L
GHSA-g84x-mcqj-x9qq

<0.27.0-r1
  • M
HTTP Request Smuggling

<0.27.0-r1
  • L
GHSA-69f9-5gxw-wvc2

<0.27.0-r1
  • L
GHSA-6jhg-hg63-jvvf

<0.27.0-r1
  • M
HTTP Request Smuggling

<0.27.0-r1
  • M
Directory Traversal

<0.27.0-r1
  • L
GHSA-jj3x-wxrx-4x23

<0.27.0-r1
  • M
Allocation of Resources Without Limits or Throttling

<0.27.0-r1
  • H
Allocation of Resources Without Limits or Throttling

<0.27.0-r1
  • L
GHSA-w853-jp5j-5j7f

<0.26.0-r3
  • M
Link Following

<0.26.0-r3
  • H
HTTP Request Smuggling

<0.24.1-r3
  • M
CVE-2025-4565

<0.24.1-r1
  • H
NULL Pointer Dereference

<0.23.0-r30
  • L
CVE-2024-12797

<0.23.0-r1
  • H
Arbitrary Command Injection

<0.23.0-r0
  • M
CVE-2023-45803

<0.23.0-r0
  • M
CVE-2024-42367

<0.22.3-r1
  • H
CVE-2024-52304

<0.22.3-r1
  • L
Arbitrary Code Injection

<0.23.0-r0
  • H
Insufficient Verification of Data Authenticity

<0.23.0-r0
  • M
CVE-2024-37891

<0.23.0-r0
  • M
Race Condition

<0.21.0-r2
  • L
CVE-2024-35195

<0.23.0-r0
  • L
CVE-2024-27306

<0.20.1-r0
  • H
Inefficient Regular Expression Complexity

<0.23.0-r0