CVE intelligence

CVE-2026-86251

h3 versions before 1.15.9 contain a path traversal vulnerability in the serveStatic utility. A double-decoding flaw allows a request path co

Published 2026-09-06 · CVSS

high

NIST record