blaze vulnerabilities
CVEs whose affected-version data names the blaze package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-73494High· 7.4blaze is a Scala library for building asynchronous pipelines, with a focus on network IO
blaze is a Scala library for building asynchronous pipelines, with a focus on network IO. Prior to 0.23.18 and from 1.0.0-M1 until 1.0.0-M42, five HTTP/1.1 conformance laxities in the hand-written Java parser under http/src/main/java/org…
▾ Twilighthttp4s · blazeEPSS 0.37%via NVD
CVE-2026-73495High· 7.4blaze is a Scala library for building asynchronous pipelines, with a focus on network IO
blaze is a Scala library for building asynchronous pipelines, with a focus on network IO. Prior to 0.23.18 and 1.0.0-M42, blaze-server can merge HTTP/1.1 chunked-body trailer fields into Request.headers. Because trailer fields are attack…
▾ Twilighthttp4s · blazeEPSS 0.29%via NVD