Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 03 Jun 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Response Header Injection in CrowCpp Crow via Unvalidated Header Values |
Wed, 03 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | CrowCpp Crow v1.3.1 Response Header Injection Vulnerability | |
| Weaknesses | CWE-20 |
Wed, 03 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 03 Jun 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | CrowCpp Crow v1.3.1 Response Header Injection Vulnerability | |
| Weaknesses | CWE-113 CWE-20 |
Wed, 03 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Crowcpp
Crowcpp crow |
|
| Vendors & Products |
Crowcpp
Crowcpp crow |
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CrowCpp Crow through v1.3.1 HTTP is vulnerable to response header injection via unvalidated response header values. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-03T16:06:06.706Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-38967
Updated: 2026-06-03T16:04:59.095Z
Status : Deferred
Published: 2026-06-02T20:16:35.487
Modified: 2026-06-04T16:26:20.550
Link: CVE-2026-38967
No data.
OpenCVE Enrichment
Updated: 2026-06-03T19:30:36Z