Secure_headers
This hub aggregates every CVE we track for Secure_headers, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
3
CVEs tracked
0
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM3
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
2024-092026-08
Latest CVEs
The 3 most recently published vulnerabilities affecting Secure_headers.
- CVE-2026-54163secure_headers: CSP directive injection via sandbox, plugin_types, and report_to when given untrusted input4.7
- CVE-2020-5216Limited header injection when using dynamic overrides with user input in RubyGems secure_headers4.4
- CVE-2020-5217Directive injection when using dynamic overrides with user input in RubyGems secure_headers4.4
Product normalization is registry-driven with AI assist and human review. How it works