← Back to feed
advisories Zero Day Initiative

ZDI-26-590: libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

Zero Day Initiative

This vulnerability allows remote attackers to execute arbitrary code on affected installations of libwebsockets. Authentication is not required to exploit th...

T1190 1 IOC
Read the full story Zero Day Initiative →

Related Coverage

advisories ISC Stormcast For Wednesday, September 23rd, 2026 https://isc.sans.edu/podcastdetail/10106, (Wed, Sep 23rd) SANS ISC · Sep 23 advisories Macfinger ClickFix campaign, (Tue, Sep 22nd) SANS ISC · Sep 23 advisories The Truth about GET and HTTP Standards, (Tue, Sep 22nd) SANS ISC · Sep 22