— Hex
EEF-CVE-2026-49755 · CVE-2026-49755, GHSA-655f-mp8p-96gv Decompression bomb DoS in Req via auto-decoded archive and compressed response bodies
Modified: 6/8/2026
package
pkg:hex/req
Decompression bomb DoS in Req via auto-decoded archive and compressed response bodies
Modified: 6/8/2026
Multipart form-data header injection in Req via unescaped name/filename/content_type
Modified: 6/8/2026