tesla vulnerabilities
CVEs whose affected-version data names the tesla package (erlang). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
5 CVEsRSS
CVE-2026-48596LowTesla has CRLF injection in request `Content-Type` header via `add_content_type_param`
Tesla has CRLF injection in request `Content-Type` header via `add_content_type_param`
▾ Sunlittesla · teslaEPSS 0.24%via GHSA
CVE-2026-48594HighTesla has decompression bomb on response body
Tesla has decompression bomb on response body
▾ Twilighttesla · teslaEPSS 0.46%via GHSA
CVE-2026-48595HighTesla: Authorization header leaks on cross-origin redirect via case-sensitive filtering
Tesla: Authorization header leaks on cross-origin redirect via case-sensitive filtering
▾ Twilighttesla · teslaEPSS 0.49%via GHSA
CVE-2026-48597HighTesla vulnerable to atom exhaustion via untrusted URL scheme
Tesla vulnerable to atom exhaustion via untrusted URL scheme
▾ Twilighttesla · teslaEPSS 0.35%via GHSA
CVE-2026-48598LowPoCTesla vulnerable to multipart part smuggling via unescaped `content-disposition` values
Tesla vulnerable to multipart part smuggling via unescaped `content-disposition` values
▾ Twilighttesla · teslaEPSS 0.27%via GHSA