Psr-7
This hub aggregates every CVE we track for Psr-7, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
7
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM5HIGH2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
1
0
2024-092026-08
Latest CVEs
The 7 most recently published vulnerabilities affecting Psr-7.
- CVE-2026-59882guzzlehttp/psr7: Host Confusion via Weak URI Host Validation4.2
- CVE-2026-55766guzzlehttp/psr7: CRLF Injection in HTTP Start-Line Serialization4.8
- CVE-2026-49214guzzlehttp/psr7 has CRLF Injection via URI Host Component5.3
- CVE-2026-48998guzzlehttp/psr7 has Host Confusion via Authority Reinterpretation5.3
- CVE-2023-29530Laminas Diactoros vulnerable to HTTP Multiline Header Termination7.5
- CVE-2023-29197Improper header name validation in guzzlehttp/psr75.3
- CVE-2022-24775Improper Input Validation in guzzlehttp/psr77.5
Product normalization is registry-driven with AI assist and human review. How it works