guzzle
OSS Librariesoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting guzzle.
- CVE-2026-69246Guzzle: Noncanonical host can bypass host-based checks7.2
- CVE-2026-69245Guzzle: Noncanonical cookie domain keeps subdomain scope6.5
- CVE-2026-67354guzzlehttp/guzzle before 7.15.1 URI Fragment Disclosure via Referer5.9
- CVE-2026-67355guzzlehttp/guzzle before 7.15.1 Host-only Cookie Scope5.9
- CVE-2026-67339guzzlehttp/guzzle before 7.14.2 Proxy-Authorization Header Disclosure5.3
- CVE-2026-67353guzzlehttp/guzzle before 7.15.1 Unbounded Cookie Denial of Service5.3
- CVE-2026-59883Guzzle: Cookie Disclosure and Injection via IP-Address Domains4.7
- CVE-2026-59882guzzlehttp/psr7: Host Confusion via Weak URI Host Validation4.2
- CVE-2026-55766guzzlehttp/psr7: CRLF Injection in HTTP Start-Line Serialization4.8
- CVE-2026-55767Guzzle: Dot-Only Cookie Domains Match All Hosts in guzzlehttp/guzzle5.8
- CVE-2026-55568Guzzle: Silent HTTPS-Proxy Downgrade to Cleartext5.9
- CVE-2026-53723guzzlehttp/guzzle-services' XML Request Serialization Vulnerable to XML Injection via CDATA Terminator5.8
- CVE-2026-49214guzzlehttp/psr7 has CRLF Injection via URI Host Component5.3
- CVE-2026-48998guzzlehttp/psr7 has Host Confusion via Authority Reinterpretation5.3
- CVE-2023-29197Improper header name validation in guzzlehttp/psr75.3