uriparser_project CVE Vulnerabilities & CVE List (11)

Products (CPE): — CVEs: 11

uriparser_project vulnerability overview

Aggregates CVE and security vulnerability intelligence across all uriparser_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk buffer overflow and vendor risk memory corruption and related problems; some flaws may lead to vendor impact application crash and vendor impact memory corruption.

Vulnerability distribution trend (last 24 months)

Showing 111 of 11 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-44928 In uriparser before 1.0.2, the function family EqualsUri can misclassify two unequal URIs as equal. [email protected] 2.9 0.00% 2026-05-08 2026-05-12
CVE-2026-44927 In uriparser before 1.0.2, there is pointer difference truncation to int in various places. [email protected] 2.9 0.00% 2026-05-08 2026-05-12
CVE-2026-42371 uriparser before 1.0.1 has numeric truncation in text range comparison, if an application accepts URIs with a length in gigabytes. [email protected] 5.1 0.01% 2026-04-27 2026-05-18
CVE-2024-34403 An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a long string. [email protected] 5.9 0.47% 2024-05-03 2025-11-04
CVE-2024-34402 An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultant buffer overflow. [email protected] 8.6 0.46% 2024-05-03 2025-11-04
CVE-2021-46142 An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax. [email protected] 5.5 0.09% 2022-01-06 2024-11-21
CVE-2021-46141 An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriFreeUriMembers and uriMakeOwner. [email protected] 5.5 0.09% 2022-01-06 2024-11-21
CVE-2018-20721 URI_FUNC() in UriParse.c in uriparser before 0.9.1 has an out-of-bounds read (in uriParse*Ex* functions) for an incomplete URI with an IPv6 address containing an embedded IPv4 address, such as a "//[::44.1" address. [email protected] 9.8 0.53% 2019-01-16 2024-11-21
CVE-2018-19200 An issue was discovered in uriparser before 0.9.0. UriCommon.c allows attempted operations on NULL input via a uriResetUri* function. [email protected] 7.5 1.12% 2018-11-12 2024-11-21
CVE-2018-19199 An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an integer overflow via a uriComposeQuery* or uriComposeQueryEx* function because of an unchecked multiplication. [email protected] 9.8 0.70% 2018-11-12 2024-11-21
CVE-2018-19198 An issue was discovered in uriparser before 0.9.0. UriQuery.c allows an out-of-bounds write via a uriComposeQuery* or uriComposeQueryEx* function because the '&' character is mishandled in certain contexts. [email protected] 9.8 0.65% 2018-11-12 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence