Current section

3 Advisories

Jump to
EEF-CVE-2026-43968 CVE-2026-43968

CR Injection in SSE Encoder Enables Event Splitting via cow_sse:event/1

May 11, 2026
CVSS
?
6.3 / 10.0 Medium
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N

Affected Versions

>= 2.6.0
EEF-CVE-2026-7790 CVE-2026-7790

Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS

May 11, 2026
CVSS
?
8.7 / 10.0 High
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Versions

>= 0.6.0 and < 2.16.1
EEF-CVE-2026-43969 CVE-2026-43969

Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/1

May 11, 2026
CVSS
?
2.1 / 10.0 Low
CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N

Affected Versions

>= 2.9.0

Checksum

Dependency Config

mix.exs

rebar.config

Gleam

erlang.mk

Package Details

Downloads Last 30 days, all versions
0 20K 40K 60K 80K

this version

3 932 976

yesterday

11 905

last 7 days

292 197

all time

98 774 951

Last Updated

Sep 18, 2025

License

ISC

Build Tools

make rebar3

Publisher

essen essen