CVE-2025-53628

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to 0.20.1, cpp-httplib does not have a limit for a unique line, permitting an attacker to explore this to allocate memory arbitrarily. This vulnerability is fixed in 0.20.1. NOTE: This vulnerability is related to CVE-2025-53629.
Configurations

Configuration 1 (hide)

cpe:2.3:a:yhirose:cpp-httplib:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-07-10 20:15

Updated : 2025-08-06 18:08


NVD link : CVE-2025-53628

Mitre link : CVE-2025-53628

CVE.ORG link : CVE-2025-53628


JSON object : View

Products Affected

yhirose

  • cpp-httplib
CWE
CWE-770

Allocation of Resources Without Limits or Throttling

CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

CWE-444

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')